Cybertrion Systems

[1/5] IBM OS/400 TCP Packet Processing Security Bypass Issue

June 29th, 2007 by
[1/5] IBM OS/400 TCP Packet Processing Security Bypass Issue

:A security issue has been reported in IBM OS/400, which potentially can be exploited by malicious people to bypass certain security restrictions.The problem is that TCP SYN packets with the FIN flag set are not discarded and can be exploited to e.g. bypass certain firewall rules.Solution:Apply PTFs. See vendor’s advisory for details.Provided and/or discovered by:Reported by the vendor.Original Advisory:http://www-1.ibm.com/support/docview….=nas2742405285431729b86256e620067dc17

Original post by manisha

[1/5] IBM OS/400 TCP Packet Processing Security Bypass Issue

Related Articles:
  • [1/5] GraphicsMagick Insecure File Extension Processing
  • [2/5] D-Bus “send_interface” Security Policy Bypass
  • [3/5] NetBSD FAST_IPSEC “ipsec4_get_ulp()” Security Bypass
  • [2/5] Websense User-Agent Filtering Bypass Security Issue
  • [3/5] IPSwitch WS_FTP Server Manager Security Bypass


  • Posted in Advisories - Exploits | | [1/5] IBM OS/400 TCP Packet Processing Security Bypass Issue

    << [2/5] Avaya Products Shadow “useradd.c” Insecure Mailbox File Permissions | [3/5] Ubuntu update for MadWifi >>