Vulnerabilities > CVE-2002-0514 - Information Exposure Through Discrepancy vulnerability in Openbsd 3.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is different than the default TTL.

Vulnerable Configurations

Part Description Count
OS
Openbsd
1

Common Weakness Enumeration (CWE)