{"id":4885,"date":"2005-05-19T12:00:07","date_gmt":"2005-05-19T10:00:07","guid":{"rendered":"https:\/\/destinationcyber.com\/?p=4885"},"modified":"2005-05-19T12:00:07","modified_gmt":"2005-05-19T10:00:07","slug":"une-nouvelle-vulnerabilite-affecte-le-protocole-tcp","status":"publish","type":"post","link":"https:\/\/destinationcyber.com\/?p=4885","title":{"rendered":"Une nouvelle vuln\u00e9rabilit\u00e9 affecte le protocole TCP"},"content":{"rendered":"<p class=\"post_excerpt\">Un vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 identifi\u00e9e dans plusieurs syst\u00e8mes d&rsquo;exploitation (Microsoft Windows, Cisco, FreeBSD, OpenBSD), elle pourrait \u00eatre exploit\u00e9e par des attaquants distants afin de causer un d\u00e9ni de service (DoS). <\/p>\n<p>Le probl\u00e8me r\u00e9sulte d&rsquo;une erreur pr\u00e9sente aux niveaux des Timestamps TCP (Transmission Control Protocol) et de l&rsquo;option PAWS (Protection Against Wrapped Sequence Numbers) qui ne g\u00e8rent pas correctement certains segments sp\u00e9cialement con\u00e7us, ce qui pourrait \u00eatre exploit\u00e9 par un attaquant distant afin d&rsquo;alt\u00e9rer le fonctionnement d&rsquo;un syst\u00e8me vuln\u00e9rable en injectant un segment malicieux au sein d&rsquo;une connexion \u00e9tablie entre deux machines. <\/p>\n<p>L&rsquo;exploitation de cette faille n&rsquo;est possible que si l&rsquo;attaquant conna\u00eet les adresses IP et les num\u00e9ros de ports utilis\u00e9s par les deux machines, ce qui r\u00e9duit consid\u00e9rablement le risque r\u00e9el. <\/p>\n<p>Le risque li\u00e9 \u00e0 cette faille est qualifi\u00e9 de \u00ab\u00a0<a href=\"http:\/\/www.frsirt.com\/definitions.php\"><strong>Mod\u00e9r\u00e9<\/strong><\/a>\u00a0\u00bb par le FrSIRT. Il est donc recommand\u00e9 d&rsquo;appliquer <a href=\"http:\/\/www.frsirt.com\/redirect\/index.php?redirect=http:\/\/www.frsirt.com\/bulletins\/1260#solution\">les correctifs<\/a> officiels. <\/p>\n<p>Note : Cette vuln\u00e9rabilit\u00e9 est ind\u00e9pendante de celle d\u00e9crite dans le bulletin <a href=\"http:\/\/www.frsirt.com\/redirect\/index.php?redirect=http:\/\/www.frsirt.com\/bulletin\/2005\/0559\">FrSIRT\/AVIS-2005-0559<\/a>.<\/p>\n<p>[source &#8211; yahoo.com]&nbsp;FrSIRT.COM <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Un vuln\u00e9rabilit\u00e9 a \u00e9t\u00e9 identifi\u00e9e dans plusieurs syst\u00e8mes d&rsquo;exploitation (Microsoft Windows, Cisco, FreeBSD, OpenBSD), elle pourrait \u00eatre exploit\u00e9e par des attaquants distants afin de causer un d\u00e9ni de service (DoS). <\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_citadela_custom_class":"","footnotes":""},"categories":[15],"tags":[],"class_list":["post-4885","post","type-post","status-publish","format-standard","hentry","category-securite"],"_links":{"self":[{"href":"https:\/\/destinationcyber.com\/index.php?rest_route=\/wp\/v2\/posts\/4885","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/destinationcyber.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/destinationcyber.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/destinationcyber.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/destinationcyber.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4885"}],"version-history":[{"count":0,"href":"https:\/\/destinationcyber.com\/index.php?rest_route=\/wp\/v2\/posts\/4885\/revisions"}],"wp:attachment":[{"href":"https:\/\/destinationcyber.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4885"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/destinationcyber.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4885"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/destinationcyber.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4885"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}