Security Advisory

CVE-2000-0916

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2000-11-29 05:00:00
Last updated 2024-08-08 05:37:31
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

FreeBSD 4.1.1 and earlier, and possibly other BSD-based OSes, uses an insufficient random number generator to generate initial TCP sequence numbers (ISN), which allows remote attackers to spoof TCP connections.