Microsoft Windows SynAttackProtect predictable hash

November 29, Security Focus — Microsoft Windows SynAttackProtect predictable hash remote denial of service vulnerability. Microsoft Windows is prone to a denial of service vulnerability. The vulnerability arises due to a design error in the function responsible for the hash table management for “SynAttackProtect.” Reports indicate that the affected function used by the TCP/IP stack creates a predictable hash, allowing an attacker to send a large number of SYN packets with an identical hash value. A successful attack can eventually lead to a denial of service condition due to the lookup algorithm becoming very inefficient at performing searches.
Solution: http://www.securityfocus.com/bid/15613/solution
Source: http://www.securityfocus.com/bid/15613/references

Comments are closed.