The implementation of SYN cookies (syncookies) in FreeBSD 4.5 through 5.0-RELEASE-p3 uses only 32-bit internal keys when generating syncookies, which makes it easier for remote attackers to conduct brute force ISN guessing attacks and spoof legitimate traffic.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Freebsd | Freebsd | 4.5-release (including) | 4.5-release (including) |
Freebsd | Freebsd | 4.6-release (including) | 4.6-release (including) |
Freebsd | Freebsd | 4.7-release (including) | 4.7-release (including) |
Freebsd | Freebsd | 4.7-stable (including) | 4.7-stable (including) |
Freebsd | Freebsd | 5.0-release (including) | 5.0-release (including) |