The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used. This occurs because of use of Algorithm 4 ("Double-Hash Port Selection Algorithm") of RFC 6056.
References
Configurations
Information
Published : 2022-06-05 15:15
Updated : 2022-09-28 08:15
NVD link : CVE-2022-32296
Mitre link : CVE-2022-32296
JSON object : View
CWE
CWE-203
Observable Discrepancy
Products Affected
linux
- linux_kernel