StandardDraft
CAPEC-494TCP Fragmentation
Abstraction
Standard
Status
Draft
Description
An adversary may execute a TCP Fragmentation attack against a target with the intention of avoiding filtering rules of network controls, by attempting to fragment the TCP packet such that the headers flag field is pushed into the second fragment which typically is not filtered.
Metadata: standard CAPEC pattern, status draft. Underlying weaknesses: CWE-770, CWE-404. Related CAPEC pattern: [object Object].
Related weaknesses· 2
Related attack patterns· 1
Exploits2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Allocation of Resources Without Limits or Throttlingcwe-770 | 100% | live |
| Weakness | Improper Resource Shutdown or Releasecwe-404 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.