Several vulnerabilities were reported in the TCP, ICMP and IP protocols, which may be exploited by remote attackers to cause a denial of service. These flaws occur when handling specially crafted ICMP error messages, which may be exploited by an attacker to inject arbitrary data into a TCP stream (blind data injection attack) or cause arbitrary TCP connections to end prematurely (blind reset attack).
Credits
Vulnerability reported by Fernando Gont
ChangeLog
2005-04-12 : Initial release
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.