[10027] in bugtraq
Re: Possible security hole
daemon@ATHENA.MIT.EDU (Cristiano Lincoln Mattos)
Mon Mar 29 14:27:15 1999
Errors-To: lincoln@hotlink.com.br
Date: Mon, 29 Mar 1999 08:09:03 -0300
Reply-To: lincoln@hotlink.com.br
From: Cristiano Lincoln Mattos <lincoln@HOTLINK.COM.BR>
X-To: Christoforos Karatzinis <chka@SOLUTIONS.IE>
To: BUGTRAQ@NETSPACE.ORG
Quoting Christoforos Karatzinis <chka@SOLUTIONS.IE>:
Hi,
The FW1 documentation clearly states that there is
a small delay after the interface initialize's and the
FW starts acting on it. It is possible to do something
"bad" to it in this period...
Regards,
Cristiano Lincoln Mattos
Recife / Brazil
> The first 25 packets were lost before the interface's
initialization. The
> packets with sequence number greater than 34 are droped
from the firewall.
> What about the packets with sequence number 25-34? Is it
possible that
> someone can use this time (after the interface's
initialization and before
> the firewall's initialization) to do something bad?
>
> Regards,
> Christofer