Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


April 21, 2004

Vulnerabilities in TCP Protocol

RSS
Subscribe to Windows IT Pro | See More Security Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!

Knowledge about vulnerabilities in the TCP protocol has been published by the US Computer Emergency Response Team (CERT) as well as the UK National Infrastructure Security Coordination Center (NISCC).

The problems are serious in that they can affect a wide array of platforms including many types of routers used to operate the Internet at top tier Internet service providers. Potential problems include session resets which result in denial of service attacks as well as the potential to inject data into TCP-based sessions.

According to CERT and NISCC the Border Gateway Protocol (BGP) could be most vulnerable since BGP sessions rely on persistent connections between peers. The interruption of BGP sessions could result in network outages of varying lengths of time depending on how devices are configured. However, BGP sessions could be better protected against potential attacks by using MD5 signatures or by using IPSec to tunnel BGP sessions. IPSec can prevent data injections as well as session resets.

Numerous vendors have released their own related bulletins, including Cisco, Lucent, Check Point, Juniper, Nortel, SGI, Cray, Certicom, and more. The Internet Storm Center (ISC) reports that a new TCP reset tool was released for Windows so be sure to read the bulletins from CERT and NISCC and check with your vendors for workarounds and patches to the problems.

End of Article



Reader Comments
Interesting topic and three good links, but this is more of a blurb than an article. Was that the intent?

Chris April 22, 2004


You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now




Top Viewed ArticlesView all articles
Command Prompt Tricks

One reader shares his tip for setting up the command prompt to reflect a remote path. ...

2009 Windows IT Pro Editors' Best and Community Choice Awards

Picking a favorite product from an impressive crowd of competitive offerings is never an easy task, and such was the case with our Editors' Best and Community Choice awards this year. ...

WinInfo Short Takes: Week of November 23, 2009

An often irreverent look at some of the week's other news, including some post-PDC some soul searching, a Google Chrome OS announcement and a Microsoft response, Windows 7 off to a supposedly strong start, the Jonas Brothers and Xbox 360, and so much more ...


Security Whitepapers Reducing the Costs and Risks of Branch Office Data Protection

Solving Desktop Management Challenges in Healthcare

Solving Desktop Management Challenges in Education

Related Events Managing IT Across Multiple Locations

Introduction to Identity Lifecycle Manager "2"

SQL Server Security: How to Secure, Monitor & Audit Your Databases

Check out our list of Free Email Newsletters!

Security eBooks Spam Fighting and Email Security for the 21st Century

Understanding and Leveraging Code Signing Technologies

A Guide to Windows Certification and Public Keys

Related Security Resources Introducing Left-Brain.com, the online IT bookstore
Looking for books, CDs, toolkits, eBooks? Prime your mind at Left-Brain.com

Discover Windows IT Pro eLearning Series!
Clear & detailed technical information and helpful how-to's, all in our trademark no-nonsense format


Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement