<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 11618 - TCP/IP SYN+FIN Packet Filtering Weakness resolution in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/483563#M2710</link>
    <description>&lt;P&gt;I have the same alert, can you tell me if the alert could be resolved?&lt;/P&gt;</description>
    <pubDate>Thu, 28 Apr 2022 15:58:27 GMT</pubDate>
    <dc:creator>Pablo_Parreno</dc:creator>
    <dc:date>2022-04-28T15:58:27Z</dc:date>
    <item>
      <title>11618 - TCP/IP SYN+FIN Packet Filtering Weakness resolution</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/466015#M2470</link>
      <description>&lt;P&gt;&lt;SPAN&gt;VA scan flag out the below for GP Portal URL&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;11618 - TCP/IP SYN+FIN Packet Filtering Weakness&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;-&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Synopsis&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;It may be possible to bypass firewall rules.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;Description&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;The remote host does not discard TCP SYN packets that have the FIN flag set.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Depending on the kind of firewall you are using, an attacker may use this flaw to bypass its rules.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;See Also&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&lt;A href="https://seclists.org/bugtraq/2002/Oct/274" target="_blank"&gt;https://seclists.org/bugtraq/2002/Oct/274&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please advise how to resolved this issue.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 23:26:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/466015#M2470</guid>
      <dc:creator>isentric89</dc:creator>
      <dc:date>2022-02-15T23:26:42Z</dc:date>
    </item>
    <item>
      <title>Re: 11618 - TCP/IP SYN+FIN Packet Filtering Weakness resolution</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/483563#M2710</link>
      <description>&lt;P&gt;I have the same alert, can you tell me if the alert could be resolved?&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 15:58:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/483563#M2710</guid>
      <dc:creator>Pablo_Parreno</dc:creator>
      <dc:date>2022-04-28T15:58:27Z</dc:date>
    </item>
    <item>
      <title>Re: 11618 - TCP/IP SYN+FIN Packet Filtering Weakness resolution</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/520826#M3414</link>
      <description>&lt;P&gt;Is there any update to this? We are seeing this in our scans also.&lt;/P&gt;
&lt;P&gt;Thank you,&lt;/P&gt;
&lt;P&gt;Tom&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2022 16:33:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/11618-tcp-ip-syn-fin-packet-filtering-weakness-resolution/m-p/520826#M3414</guid>
      <dc:creator>thoffman</dc:creator>
      <dc:date>2022-11-09T16:33:57Z</dc:date>
    </item>
  </channel>
</rss>

