cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
369
Views
0
Helpful
1
Replies

Predictable TCP Initial Sequence Numbers Vulnerability

Learner09
Level 1
Level 1

Hello Experts, 

Any idea on how to address the subject vulnerability is cisco routers, where I have observed the routers with latest recommended software were also affected.

1 Reply 1

Ramblin Tech
Spotlight
Spotlight

TCP sequence number randomization was supposed to have been addressed more than 20 years ago:

https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-20010301-ios-tcp-isn-random.html

If your findings show predictability, you might contact Cisco's PSIRT with your observations: psirt@cisco.com

 

Disclaimer: I am long in CSCO
Review Cisco Networking products for a $25 gift card