Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/528 | vdb entry |
http://www.securityfocus.com/archive/1/7219 | mailing list exploit patch vendor advisory |