[sclug] Server patch

Peter Brewer p.w.brewer at reading.ac.uk
Mon Sep 5 14:40:21 UTC 2005


I have been asked to patch the following problem on a Suse 9.3 server:

**************
The remote host does not discard TCP SYN packets which
have the FIN flag set.

Depending on the kind of firewall you are using, an
attacker may use this flaw to bypass its rules.

See also : http://archives.neohapsis.com/archives/bugtraq/2002-10/0266.html
http://www.kb.cert.org/vuls/id/464113

Solution : Contact your vendor for a patch
Risk factor : Medium
BID : 7487
**************

I haven't been able to find a patch.  Anyone get any ideas?

Many thanks

Peter





More information about the Sclug mailing list