CVE-2020-36516: Medium severity Linux Linux kernel vulnerability
A TCP/IP packet spoofing attack flaw was found in the Linux kernel’s TCP/IP protocol, where a Man-in-the-Middle Attack (MITM) performs an IP fragmentation attack and an IPID collision. This flaw allows a remote user to pretend to be the sender of the TCP/IP packet for an existing TCP/IP session.
Other sources
An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.
The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.
Reference:
https://dl.acm.org/doi/10.1145/3372297.3417884
— Red Hat
Affected Software
Remediation
Information
Event History
Parent advisories
This vulnerability appears in the following advisories.
Frequently Asked Questions
What is the severity of CVE-2020-36516?
CVE-2020-36516 has a critical severity level due to its potential to enable Man-in-the-Middle attacks.
Who is affected by CVE-2020-36516?
CVE-2020-36516 affects various versions of the Linux kernel, specifically those prior to the specified remediation versions.
How do I fix CVE-2020-36516?
To fix CVE-2020-36516, upgrade to the specified remedial kernel versions from your Linux distribution.
What type of attack does CVE-2020-36516 expose systems to?
CVE-2020-36516 exposes systems to TCP/IP packet spoofing attacks allowing an attacker to impersonate legitimate TCP/IP sessions.
Is there any workaround for CVE-2020-36516?
No specific workarounds are recommended for CVE-2020-36516; the best approach is to apply the security updates.