CVE-2004-0230 Patch In pfSense Soon?
-
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0230
TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.
ReferencesFreeBSD has fixed this 10 years old bug:
https://www.freebsd.org/security/advisories/FreeBSD-SA-14:19.tcp.ascIs there any chance to see this fix in pfSense soon?
-
See the following thread:
https://forum.pfsense.org/index.php?topic=81859.msg447717#msg447717
-
if it was a problem, we would have released a new version by now.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.