Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
|
History
20 Nov 2024, 23:54
Type | Values Removed | Values Added |
---|---|---|
References | () ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:15.tcp.asc - | |
References | () ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.64/SCOSA-2005.64.txt - | |
References | () http://secunia.com/advisories/15393Â - | |
References | () http://secunia.com/advisories/15417/Â - Patch | |
References | () http://secunia.com/advisories/18222Â - | |
References | () http://secunia.com/advisories/18662Â - | |
References | () http://support.avaya.com/elmodocs2/security/ASA-2006-032.htm - | |
References | () http://www.cisco.com/warp/public/707/cisco-sn-20050518-tcpts.shtml - Vendor Advisory | |
References | () http://www.kb.cert.org/vuls/id/637934Â - Third Party Advisory, US Government Resource | |
References | () http://www.securityfocus.com/bid/13676Â - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/20635Â - |
Information
Published : 2005-05-31 04:00
Updated : 2024-11-20 23:54
NVD link : CVE-2005-0356
Mitre link : CVE-2005-0356
CVE.ORG link : CVE-2005-0356
JSON object : View
Products Affected
cisco
- sn_5420_storage_router
- ciscoworks_1105_hosting_solution_engine
- personal_assistant
- aironet_ap350
- web_collaboration_option
- content_services_switch_11800
- conference_connection
- ciscoworks_windows_wug
- meetingplace
- content_services_switch_11501
- sn_5428_storage_router
- interactive_voice_response
- mgx_8250
- remote_monitoring_suite_option
- content_services_switch_11150
- sn_5420_storage_router_firmware
- ciscoworks_vpn_security_management_solution
- content_services_switch_11503
- unity_server
- emergency_responder
- ciscoworks_1105_wireless_lan_solution_engine
- aironet_ap1200
- e-mail_manager
- webns
- ciscoworks_cd1
- ciscoworks_access_control_list_manager
- content_services_switch_11506
- ciscoworks_windows
- content_services_switch_11500
- call_manager
- ciscoworks_common_services
- ip_contact_center_express
- content_services_switch_11000
- secure_access_control_server
- ciscoworks_common_management_foundation
- content_services_switch_11050
- mgx_8230
- ciscoworks_lms
- ip_contact_center_enterprise
- support_tools
- intelligent_contact_manager
- agent_desktop
nortel
- business_communications_manager
- callpilot
- 7220_wlan_access_point
- succession_communication_server_1000
- ethernet_routing_switch_1648
- optical_metro_5000
- optical_metro_5100
- universal_signaling_point
- contact_center
- survivable_remote_gateway
- optical_metro_5200
- ethernet_routing_switch_1624
- 7250_wlan_access_point
- ethernet_routing_switch_1612
hitachi
- alaxala
- gs4000
- gr4000
- gr3000
yamaha
- rt250i
- rt300i
- rtx1500
- rtx1000
- rtx2000
- rtv700
- rt105
- rt57i
- rtx1100
freebsd
- freebsd
alaxala
- alaxala_networks
f5
- tmos
microsoft
- windows_2003_server
- windows_xp
- windows_2000
openbsd
- openbsd
CWE