Linux Kernel SYN Cookies 'syncookies.c' Spoofing Vulnerability
BID:66188
Info
Linux Kernel SYN Cookies 'syncookies.c' Spoofing Vulnerability
| Bugtraq ID: | 66188 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 20 2013 12:00AM |
| Updated: | Sep 20 2013 12:00AM |
| Credit: | Jakob Lell |
| Vulnerable: |
Linux Linux Kernel 3.10.1 |
| Not Vulnerable: | |
Discussion
Linux Kernel SYN Cookies 'syncookies.c' Spoofing Vulnerability
The Linux Kernel is prone to a security vulnerability that may allow attackers to conduct spoofing attacks.
Attackers can exploit this issue to spoof and impersonate a legitimate user, Other attacks are also possible.
The Linux Kernel is prone to a security vulnerability that may allow attackers to conduct spoofing attacks.
Attackers can exploit this issue to spoof and impersonate a legitimate user, Other attacks are also possible.
References
Linux Kernel SYN Cookies 'syncookies.c' Spoofing Vulnerability
References:
References:
- Linux kernel Homepage (kernel.org)
- Quick Blind TCP Connection Spoofing with SYN Cookies (Jakob Lell)
- tcp: syncookies: reduce cookie lifetime to 128 seconds (Florian Westphal)