lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: Wed, 17 Jun 2009 13:41:47 +0300 (EEST)
From: Juha-Matti Laurio <juha-matti.laurio@...ti.fi>
To: bugtraq@...urityfocus.com
Subject: CERT-FI statement on the Outpost24 TCP issues updated

>From the statement:

"June 15 2009
In the issue #66 of the Phrack magazine there was an article on exploiting TCP Persist Timer weaknesses (http://www.phrack.com/issues.html?issue=66&id=9#article )
to cause Denial of Service conditions.
The article discusses issues similar but not the same as the issues reported by Outpost24.
The publication of the Phrack-magazine article will not affect the coordination and schedule related to the issues reported by Outpost24.
CERT-FI emphasizes that the eventual release of the issues reported by Outpost24 will be done in a coordinated fashion."

https://www.cert.fi/haavoittuvuudet/2008/tcp-vulnerabilities.html

Juha-Matti

Powered by blists - more mailing lists