First published: Sat Dec 25 2021(Updated: )
In NetBSD through 9.2, there is an information leak in the TCP ISN (ISS) generation algorithm.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetBSD NetBSD | <=9.2 | |
<=9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this information leak is CVE-2021-45488.
CVE-2021-45488 has a severity rating of 7.5 (High).
The information leak occurs in the TCP ISN (ISS) generation algorithm in NetBSD through version 9.2.
NetBSD versions up to and including 9.2 are affected by CVE-2021-45488.
It is recommended to update NetBSD to version 9.3 or apply the relevant security patch provided by the vendor.