Securityinfos Logo
"Security is a process, not a product."(Bruce Schneier)
Libri di sicurezza informatica
Articoli | Prodotti | Lavoro | Directory | Libri | Partners | Eventi | Glossario | Tools | Wireless | Ricerca | Contatti
Menu principale

Newsletter
Indirizzo email:

Nome:

Cognome:

Iscrivi
Cancella
Newsletter di questa settimana
Newsletter precedenti

Libri consigliati
 Titolo : La Sicurezza in windows 2000
 Autore : Jeff Schmidt
 Isbn : 88-386-4158-7
 Pagine : 710
 Anno : 2001
 Casa Editrice : Mc Graw Hill


Online Tools

Patches

Ultimi articoli
 Legge sul p2p di Antonio Stano
 Webinspect v1.0- Scanner di vulnerabilita'
 GFI MailSecurity Di Maurizio Cutolo
 Iptables Di Andrea Dainese
 Provato Nessus ver 1.2.3 di Marco Spiga

Ultimi siti
 Domino Security
 GFI WebMonitor for ISA Server
 GFI LANguard System Integrity Monitor
 GFI LANguard Security Event Log Monitor
 GFI LANguard Network Security Scanner 3

Ultimi tools
Nessun tool disponibile

Lavoro
Nessun lavoro disponibile

W3c validations

NetBSD not vulnerable to TCP reassembly mbuf DoS
By: Securityinfos
4 marzo , 2004 19.2846 CET


The NetBSD Security Officer team was aware of this issue, and would
like to reassure users that NetBSD is not vulnerable.

The TCP reassembly code in NetBSD was enhanced some time ago to
coalesce mbufs in the reassembly queue as out-of-order TCP segments
arrive.  This greatly reduces the potential number of mbufs a TCP
reassembly queue can use, because the length of the queue is also
limited to the size of the TCP receive window.

Additionally, mbufs in a partially-reassembled queue can be drained
and reused in resource-shortage conditions; since the out-of-order TCP
data has not been acknowledged, dropping these segments has the same
effect as if the packets had been dropped in the network, and they
will eventually be retransmitted by a legitimate remote TCP.

Together, these two points mean that this resource-exhaustion attack
is not feasible against a NetBSD host. This was confirmed using test
code supplied by Markus Friedl.

More on : www.netbsd.org/Security/

 

Invia questo comunicato via email Stampa questo comunicato


Totali
 News presenti : 895
 News estere presenti : 64352
 Articoli presenti : 14
 Comunicati Stampa : 306
 Tools presenti : 0
 Links presenti : 1015
 Annunci lavoro : 0
 Libri : 120
 Eventi presenti : 9
 Aziende presenti : 12

Ads



Opensource Partners

Pubblicita'

SONDAGGIO

Cosa vorresti trovare su Securityinfos?


Piu' News
Piu' recensioni prodotti
Piu' recensioni libri
Piu articoli
Piu' links
Newsletter giornaliera
Database Vulnerabilita'
Servizi a pagamento


Visualizza risultati
Questionari precedenti

Hanno votato 299 persone


CLASSIFICA VIRUS

VIRUS REPORT


Sito aggiornato il 10/09/2010 5.17.13 | Numero di utenti collegati: 4 | Tempo di esecuzione : 0 minuti 0 secondi 297 millisecondi