PF in OpenBSD 3.0 with the return-rst rule sets the TTL...
Moderate severity
Unreviewed
Published
Apr 30, 2022
to the GitHub Advisory Database
•
Updated Apr 3, 2025
Description
Published by the National Vulnerability Database
Aug 12, 2002
Published to the GitHub Advisory Database
Apr 30, 2022
Last updated
Apr 3, 2025
PF in OpenBSD 3.0 with the return-rst rule sets the TTL to 128 in the RST packet, which allows remote attackers to determine if a port is being filtered because the TTL is different than the default TTL.
References