IP: Invalid Length

This protocol anomaly triggers when it detects an IP packet with an IP option of invalid length. Because some IP options are dangerous (and others have only limited use), you may choose to drop these packets.

Extended Description

A remote attacker could craft a packet having an option length that does not follow the RFC specification, and cause a denial of service condition. Malicious code could also be executed with the privileges of the running process.

Short Name
IP:OPTERR:INVALID-LENGTH
Severity
Minor
Recommended
False
Recommended Action
None
Category
IP
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?