Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to conduct a denial of service via a large number of connection attempts to unresponsive systems.
Link | Tags |
---|---|
http://www.osvdb.org/1027 | vdb entry |
http://www.securityfocus.com/bid/549 | patch vendor advisory vdb entry exploit |