Re: tcp timestamp vulnerability?

From: Andre Oppermann (andre_at_freebsd.org)
Date: 05/19/05

  • Next message: Christian Brueffer: "Re: tcp timestamp vulnerability?"
    Date: Thu, 19 May 2005 11:42:33 +0200
    To: Christian Brueffer <chris@unixpages.org>
    
    

    Christian Brueffer wrote:
    >
    > Hi,
    >
    > has anyone taken a look at http://www.kb.cert.org/vuls/id/637934?

    sys/netinet/tcp_input.c Revision 1.270, Sun Apr 10 05:24:59 2005 UTC
     (5 weeks, 4 days ago) by ps
     Branch: MAIN
     Changes since 1.269: +23 -3 lines

     - Tighten up the Timestamp checks to prevent a spoofed segment from
       setting ts_recent to an arbitrary value, stopping further
       communication between the two hosts.
     - If the Echoed Timestamp is greater than the current time,
       fall back to the non RFC 1323 RTT calculation.

     Submitted by: Raja Mukerji (raja at moselle dot com)
     Reviewed by: Noritoshi Demizu, Mohan Srinivasan

    -- 
    Andre
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: Christian Brueffer: "Re: tcp timestamp vulnerability?"

    Relevant Pages

    • Re: tcp timestamp vulnerability?
      ... > Christian Brueffer wrote: ... > - Tighten up the Timestamp checks to prevent a spoofed segment from ... Since I got this from the Heise Newsticker I'll see if I can ...
      (freebsd-net)
    • Re: tcp timestamp vulnerability?
      ... > Christian Brueffer wrote: ... > - Tighten up the Timestamp checks to prevent a spoofed segment from ... still lists FreeBSD as vulnerable... ...
      (freebsd-net)
    • Re: filename prefixes while transfering images from memory cards
      ... Adding a prefix to all the files in a directory is as easy as ... extracts the timestamp, and renames each file to the timestamp. ... the image filenames that I want to group together (as described in my ... To UNSUBSCRIBE, email to debian-user-REQUEST@xxxxxxxxxxxxxxxx ...
      (Debian-User)
    • Re: [PHP] Re: british date format
      ... André Medeiros wrote: ... I think the idea here was to get a timestamp from a date in that ... PHP General Mailing List ... To unsubscribe, visit: http://www.php.net/unsub.php ...
      (php.general)
    • Re: Advice on usb pendrive purchase
      ... I know the timestamp is a bit old, ... sequence of commands seems to have fried its little brain forever. ... Jason ... To UNSUBSCRIBE, email to debian-user-request@lists.debian.org ...
      (Debian-User)