It abuses a logic bug in the Linux XFRM ESP-in-TCP subsystem

What is an "XFRM ESP-in-TCP subsystem"

Follow

@vaporeon_ i don’t entirely understand the component parts (linux documentation was not very helpful at figuring it out either!) but

  • ESP is a linux library fur IPSec, an encrypted transport layer over TCP (no i don’t know what diffurentiates it from TLS, nor why it’s in the kernel)
  • XFRM is, um, some kind of purrotocol that in the kernel is basically only used fur the Andrew Filesystem (afs), an old, seemingly obscure, distributed filesystem developed at Carnegie-Mellon University in the 80s
Sign in to participate in the conversation
📟🐱 GlitchCat

A small, community‐oriented Mastodon‐compatible Fediverse (GlitchSoc) instance managed as a joint venture between the cat and KIBI families.