Intoto Information for VU#222750

TCP/IP implementations do not adequately validate ICMP error messages


Not Affected

Vendor Statement

We analyzed the potential threats discussed in the IETF draft


and observed that Intoto products are not vulnerable to the described denial of service (DoS) attacks.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References



US-CERT has no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.