On Fri, Aug 12, 2016 at 05:19:21PM +0200, Pascal Hambourg wrote: > Why then is the sysctl present in the current Wheezy's 3.2 kernel ? > > The patches which introduced the flawed feature were backported in > upstream 3.2.37 kernel. > > <https://cdn.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.2.37>
Oh, interesting. Thank you for that. Is it safe to say, then, that the flaw is potentially present in any kernel where /proc/sys/net/ipv4/tcp_challenge_ack_limit exists? (Assuming that there is a /proc file system at all.)