Linux FPF Kernel Module Denial Of Service Vulnerability
BID:2816
Info
Linux FPF Kernel Module Denial Of Service Vulnerability
| Bugtraq ID: | 2816 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 04 2001 12:00AM |
| Updated: | Jun 04 2001 12:00AM |
| Credit: | Discovered by "XR Agent" <[email protected]> |
| Vulnerable: |
Packet Knights FPF Linux Kernel Module 1.0 |
| Not Vulnerable: | |
Discussion
Linux FPF Kernel Module Denial Of Service Vulnerability
FPF is a Linux Kernel Module which alters the Linux TCP/IP stack, causing it to emulate other operating systems when fingerprinted using tools such as nmap or Queso.
It is possible to cause the Kernel to panic by sending fragmented packets to a machine with this module loaded.
FPF is a Linux Kernel Module which alters the Linux TCP/IP stack, causing it to emulate other operating systems when fingerprinted using tools such as nmap or Queso.
It is possible to cause the Kernel to panic by sending fragmented packets to a machine with this module loaded.
Exploit / POC
Linux FPF Kernel Module Denial Of Service Vulnerability
This can be exploited using nmap. See discussion.
This can be exploited using nmap. See discussion.
Solution / Fix
Linux FPF Kernel Module Denial Of Service Vulnerability
Solution:
The vendor has made a fixed version available:
Packet Knights FPF Linux Kernel Module 1.0
Solution:
The vendor has made a fixed version available:
Packet Knights FPF Linux Kernel Module 1.0
-
Packet Knights FPF Linux Kernel Module 1.0-fix
http://www.pkcrew.org/tools.php
References
Linux FPF Kernel Module Denial Of Service Vulnerability
References:
References:
- Packet Knights Homepage (Packet Knights)