Red Hat Security Advisory 2016-1631-01

Discussion in 'News Aggregator' started by Packet Storm, 22 Aug 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-1631-01 - The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements. It was found that the RFC 5961 challenge ACK rate limiting as implemented in the Linux kernel's networking subsystem allowed an off-path attacker to leak certain information about a given connection by creating congestion on the global challenge ACK rate limit counter and then measuring the changes by probing packets. An off-path attacker could use this flaw to either terminate TCP connection and/or inject payload into non-secured TCP connection between two endpoints on the network.

    Continue reading...
     

Share This Page

Loading...