Networking-Forums.com

Professional Discussions => Security => Topic started by: deanwebb on June 23, 2015, 10:22:08 AM

Title: TCP Vulnerability in Embedded OS
Post by: deanwebb on June 23, 2015, 10:22:08 AM
https://threatpost.com/tcp-vulnerability-haunts-wind-river-vxworks-embedded-os/113429

"The VxWorks software generates predictable TCP initial sequence numbers that may allow an attacker to predict the TCP initial sequence numbers from previous values, which may allow an attacker to spoof or disrupt TCP connections," the ICS-CERT advisory says.

The systems in question are industrial control systems.