Status Check: CVE CAN-2004-0002

Dag-ErlingSmørgrav des at des.no
Thu Feb 5 03:01:55 PST 2004


Syahrul Sazli Shaharir <sazli at jaring.my> writes:
> Just want to ask about the status of this:-
>
> http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0002
>
> From list archives I gather the fix is still under refinement (but
> committed (and removed?) in HEAD and RELENG_5_2).

Not removed, just not enabled by default.  They cause problems for
legitimate applications (such as database servers and sshd) which
generate large numbers of small packets.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-security mailing list