Multiple Vendor TCP/IP Implementations Vulnerability

Solution:
If your operating system is one of those listed as vulnerable the following patches are known to be available:

Berkeley Software Design, Inc. (BSDI)
-------------------------------------------------------
BSD/OS 3.1 is vulnerable and a patch (M310-049) is available from BSDI's WWW server at: http://www.bsdi.com/support/patches

or via their ftp server from the directory:
ftp://ftp.bsdi.com/bsdi/patches/patches-3.1.

FreeBSD, Inc.
----------------------
FreeBSD 2.2.8 is not vulnerable. FreeBSD versions prior to 2.2.8 are vulnerable. FreeBSD 3.0 is also vulnerable. FreeBSD 3.0-current as of 1998/11/12 is not vulnerable.

A patch is available at:
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/patches/CA-98-13/patch

OpenBSD
-----------------
OpenBSD 2.3:
http://www.openbsd.org/errata23.html#tcpfix

OpenBSD 2.4:
http://www.openbsd.org/errata.html#tcpfix



 

Privacy Statement
Copyright 2010, SecurityFocus