How to detect the SACK Panic vulnerability with Wireshark

Ioana Daniela Rijnetu
Pentest-Tools.com
Published in
1 min readJan 10, 2020

Our security researchers have recently performed an in-depth analysis of the SACK Panic vulnerability (which was first disclosed in June 2019) to find out its exploitability against Linux machines.

Throughout this research, they identified a new method to detect vulnerable servers using Wireshark, the popular network traffic analyzer.

This article offers details about the SACK Panic vulnerability, a new detection method, and a set of mitigation measures recommended to protect against SACK Panic.

While the impact seems to be limited to denial of service attacks, this issue needs to be addressed to make users understand how these flaws can disrupt their network infrastructure and why patching is essential.

Read more technical details about the SACK Panic vulnerability on the Pentest-Tools.com blog.

--

--