CVE-2000-0916
טרם דורגה
תיאור (מקור, אנגלית)
FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.
מדדים
מוצרים מושפעים
freebsd: freebsd
קישורים
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:52.tcp-iss.asc PatchVendor Advisory
- http://www.securityfocus.com/bid/1766 PatchVendor Advisory
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:52.tcp-iss.asc PatchVendor Advisory
- http://www.securityfocus.com/bid/1766 PatchVendor Advisory