TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.
Software | From | Fixed in |
---|---|---|
netbsd / netbsd | 1.5 | 1.5.x |
netbsd / netbsd | 1.5.1 | 1.5.1.x |
netbsd / netbsd | 1.5.2 | 1.5.2.x |
netbsd / netbsd | 1.5.3 | 1.5.3.x |
netbsd / netbsd | 1.6 | 1.6.x |
netbsd / netbsd | 1.6.1 | 1.6.1.x |
netbsd / netbsd | 1.6.2 | 1.6.2.x |
netbsd / netbsd | 2.0 | 2.0.x |
oracle / solaris | 10 | 10.x |
oracle / solaris | 11 | 11.x |
openpgp / openpgp | 2.6.2 | 2.6.2.x |
mcafee / network_data_loss_prevention | - | 8.6.x |
mcafee / network_data_loss_prevention | 9.2.0 | 9.2.0.x |
mcafee / network_data_loss_prevention | 9.2.1 | 9.2.1.x |
mcafee / network_data_loss_prevention | 9.2.2 | 9.2.2.x |
xinuos / openserver | 5.0.6 | 5.0.6.x |
xinuos / openserver | 5.0.7 | 5.0.7.x |
juniper / junos | - | - |
xinuos / unixware | 7.1.1 | 7.1.1.x |
xinuos / unixware | 7.1.3 | 7.1.3.x |