M
ultiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
|
History
20 Nov 2024, 23:54
| Type | Values Removed | Values Added |
|---|---|---|
| References | () ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:15.tcp.asc - | |
| References | () ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.64/SCOSA-2005.64.txt - | |
| References | () http://secunia.com/advisories/15393 - | |
| References | () http://secunia.com/advisories/15417/ - Patch | |
| References | () http://secunia.com/advisories/18222 - | |
| References | () http://secunia.com/advisories/18662 - | |
| References | () http://support.avaya.com/elmodocs2/security/ASA-2006-032.htm - | |
| References | () http://www.cisco.com/warp/public/707/cisco-sn-20050518-tcpts.shtml - Vendor Advisory | |
| References | () http://www.kb.cert.org/vuls/id/637934 - Third Party Advisory, US Government Resource | |
| References | () http://www.securityfocus.com/bid/13676 - Exploit | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/20635 - |
Information
Published : 2005-05-31 04:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-0356
Mitre link : CVE-2005-0356
CVE.ORG link : CVE-2005-0356
JSON object : View
Products Affected
- content_services_switch_11150
- unity_server
- aironet_ap1200
- ciscoworks_windows_wug
- emergency_responder
- ciscoworks_common_management_foundation
- mgx_8250
- content_services_switch_11506
- aironet_ap350
- content_services_switch_11501
- sn_5420_storage_router
- content_services_switch_11800
- ciscoworks_1105_wireless_lan_solution_engine
- mgx_8230
- ciscoworks_cd1
- conference_connection
- sn_5428_storage_router
- ciscoworks_access_control_list_manager
- ciscoworks_lms
- ciscoworks_1105_hosting_solution_engine
- webns
- content_services_switch_11000
- content_services_switch_11503
- content_services_switch_11050
- ip_contact_center_express
- personal_assistant
- intelligent_contact_manager
- support_tools
- e-mail_manager
- meetingplace
- sn_5420_storage_router_firmware
- agent_desktop
- secure_access_control_server
- call_manager
- ciscoworks_common_services
- web_collaboration_option
- interactive_voice_response
- content_services_switch_11500
- ciscoworks_windows
- ciscoworks_vpn_security_management_solution
- ip_contact_center_enterprise
- remote_monitoring_suite_option
- optical_metro_5000
- ethernet_routing_switch_1624
- survivable_remote_gateway
- optical_metro_5100
- business_communications_manager
- 7250_wlan_access_point
- callpilot
- ethernet_routing_switch_1648
- 7220_wlan_access_point
- ethernet_routing_switch_1612
- universal_signaling_point
- optical_metro_5200
- succession_communication_server_1000
- contact_center
CWE