ASA-2019-00407 – VMware: Selective Acknowledgement (SACK) Excess Resource Usage

A crafted sequence of SACKs will fragment the TCP retransmission queue, causing resource exhaustion. A malicious actor must have network access to an affected system including the ability to send traffic with low MSS values to the target. Successful exploitation of these issues may cause the target system to crash or significantly degrade performance.

