MNBSD-2014-10: TCP SYN handling connection teardown (sequence check bypass)

Severity: Unknown

Affected Package: kernel

Summary: TCP SYN handling connection teardown (sequence check bypass)

Description

When a segment with the SYN flag arrived for an already existing connection, the TCP stack tore down the connection, bypassing the check that the segment's sequence number was within the expected window. A remote attacker could exploit this to reset connections, causing a denial of service.

Affected Versions

kernel

Recommendations

No specific recommendations provided.

References

Additional Information

Aliases: CVE-2004-0230

Published: September 16, 2014
Last Modified: September 16, 2014