Need another excuse to run a firewall? Windows Server 2003 and XP SP2 machines without properly configured firewalls are at risk of a Denial of Service (define) attack via the "LAND" bug, according to a security researcher.
Microsoft said it is looking into the situation and claims the potential issue cannot be used by an attacker to run malicious software on a computer.
In a post to the Bugtraq security mailing list, security researcher Dejan Levaja described how the LAND attack could create a DoS (define) condition on a target server. "Sending [a] TCP packet with SYN flag set, source and destination IP address and source and destination port as of destination machine, results in 15-30 seconds DoS condition," Levanja explained in the post.
The LAND attack is carried out with the help of a trio of open source-licensed tools intended to help network administrators troubleshoot and test their networks.
|