IBM SecureWay Firewall before 4.2.2 performs extra processing before determining that a packet is invalid and dropping it, which allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed TCP packets without any flags set.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=103417988503398&w=2 | mailing list |
http://www.securityfocus.com/bid/5924 | vdb entry |
http://www.iss.net/security_center/static/10249.php | vdb entry vendor advisory |