Potential DoS attack on PF due to infinite loop

2017-07-11 Thread Jingmin Zhou
Recently we discovered a potential bug in pf_lb.c. It is in the latest code that we retrieved from here: https://cvsweb.openbsd.org/cgi-bin/cvsweb/src/sys/net/pf_lb.c?annotate=1.60 The problem is at line 224. When a LB rule is configured to have 65535 as the high port, and uint16 variable tmp rea

Fwd: tcp state transition in sloppy mode

2016-06-22 Thread Jingmin Zhou
Thanks for help on this issue! -- Forwarded message -- From: Stuart Henderson Date: Wed, Jun 22, 2016 at 2:21 AM Subject: Re: tcp state transition in sloppy mode To: Jingmin Zhou Hi, Nice analysis. The PF mailing list is not very widely used any more, so you might not get a