15619 : Multiple Vendor ICMP Implementation Malformed Path MTU DoS
Printer | http://osvdb.org/15619 | Email This | Edit Vulnerability

Views This Week

6

Views All Time

122

Info

Last Modified

2 months ago

Percent Complete

100%

Disclosure

Apr 16, 2005

Discovery

Unknown

Dates

Exploit

Apr 20, 2005

Solution

Unknown

Description

Multiple ICMP implementations contains a flaw that may allow a remote denial of service. The issue is triggered due to the handling of ICMP error messages and when the "Path MTU Discovery" (PMTUD) mechanism is used. By sending a specially crafted ICMP error message, a remote attacker could arbitrary reduce the throughput of a TCP connection resulting in a loss of availability.

Classification

Location: Remote/Network Access Required
Attack Type: Denial of Service
Impact: Loss of Availability
Exploit: Exploit Unknown
Disclosure: OSVDB Verified

Solution

Contact your vendor for an appropriate upgrade. An upgrade is required as there are no known workarounds.

Products

OpenBSD
Watch-list
OpenBSD
Watch-list
3.4
Apple Computer, Inc.
Watch-list
Mac OS X
Watch-list
10.0.x
10.1.x
Sun Microsystems, Inc.
Watch-list
Sun Solaris
Watch-list
9
8
7
10
Wind River Systems Inc.
Watch-list
VxWorks
Watch-list
5.5.x
5.4
International Business Machines Corporation
Watch-list
AIX
Watch-list
Unknown or Unspecified
Juniper Networks, Inc.
Watch-list
JUNOS
Watch-list
Unknown or Unspecified
Network Appliance, Inc.
Watch-list
Data ONTAP
Watch-list
Unknown or Unspecified
Redback Networks Inc.
Watch-list
SMS
Watch-list
Unknown or Unspecified
SmartEdge
Watch-list
Unknown or Unspecified
SCO Group, Inc.
Watch-list
UnixWare
Watch-list
7.1.4 Maintenance Pack 1
WatchGuard Technologies, Inc.
Watch-list
All Products
Watch-list
All Versions
Cisco Systems, Inc.
Watch-list
IOS
Watch-list
12.0
12.1
12.2
12.3
IOS XR
Watch-list
Unknown or Unspecified
Cisco IP Phone 7940G
Watch-list
Unknown or Unspecified
Cisco IP Phone 7960G
Watch-list
Unknown or Unspecified
Cisco PIX Security Appliance
Watch-list
Unknown or Unspecified
Cisco VPN 5000 Concentrator
Watch-list
Unknown or Unspecified
Cisco ONS 15454
Watch-list
Unknown or Unspecified
Cisco ONS 15302
Watch-list
Unknown or Unspecified
Cisco ONS 15305
Watch-list
Unknown or Unspecified
Nortel Networks Limited
Watch-list
Wireless Access Point
Watch-list
7220
Switch
Watch-list
Model 2216T
VPN Router
Watch-list
100, 1010, 1050, 1100, 1700, 1740, 1750, 2700, 5000, Portfolio
Alteon
Watch-list
180, 180 Plus, 180e
Access Node (AN)
Watch-list
Unknown or Unspecified
Access Node Hub (ANH)
Watch-list
Unknown or Unspecified
Advanced Remote Node (ARN)
Watch-list
Unknown or Unspecified
Alteon ACEdirector2
Watch-list
Unknown or Unspecified
Alteon CACHEdirector Series
Watch-list
Unknown or Unspecified
Alteon Web Switch
Watch-list
AD3
Application Switch
Watch-list
2208, 2216, 2224, 2424-SSL, 2424, 2424
Backbone Concentrator Node (BCN)
Watch-list
Unknown or Unspecified
Backbone Link Node (BLN)
Watch-list
Unknown or Unspecified
BayStack 100 Hubs
Watch-list
100, 100Base-T
BayStack Hub
Watch-list
150, 200, 250
BayStack Switch
Watch-list
28200, 303, 304
310-24T, 310-24T, 380-24T, 410-24T
BayStack 30T - 30F Converter
Watch-list
Unknown or Unspecified
Bulletin temp product
Watch-list
Unknown or Unspecified
Business Policy Switch
Watch-list
Unknown or Unspecified
Content Cache
Watch-list
Unknown or Unspecified
Content Director
Watch-list
Unknown or Unspecified
Content Manager
Watch-list
Unknown or Unspecified
Contivity VPN Switch
Watch-list
400, 1000, 1500, 2000, 2500, 4000
Contivity Secure IP Services Gateway
Watch-list
1600, 2600, 4500, 4600
e-mobility Wireless LAN
Watch-list
Unknown or Unspecified
Ethernet Routing Switch
Watch-list
1150, 5510, 5520, 5530-24TFD, 8300, 8600, RPS 15, Web Switching Module
Ethernet Switch
Watch-list
325, 380-24F, 420-24T, 425-24T, 450-24T, 460-24T-PWR, 470-24T, 470-48T, Portfolio, Power Supply Unit 10
Instant Internet
Watch-list
100-S
Media Gateway
Watch-list
15000, 7400
Metro Ethernet Routing Switch
Watch-list
8600
Intelligent Traffic Management Signature for EMS Wizard
Watch-list
Unknown or Unspecified
Link Optimizer
Watch-list
2430, 5430
Multiprotocol Router
Watch-list
6400, 7400
Multiservice Switch
Watch-list
15000, 15000-VSS, 15000/20000, 20000
Passport Routing Switch
Watch-list
1100 , 1200
Passport
Watch-list
4120
Passport Packet Voice Gateway (PVG)
Watch-list
Unknown or Unspecified
Security Element Manager
Watch-list
Unknown or Unspecified
Services Edge Router
Watch-list
5500
SSL Accelerator
Watch-list
Unknown or Unspecified
SSL VPN
Watch-list
Unknown or Unspecified
Switched Firewall
Watch-list
5100, 6000
VPN Client
Watch-list
Unknown or Unspecified
VPN Gateway
Watch-list
3050
Web Switch
Watch-list
184, AD4
Wireless Gateway
Watch-list
7250
Microsoft Corporation
Watch-list
Windows
Watch-list
2000 SP3
98
98 SE
ME
2000 SP4
XP SP1
XP SP2
2003 Server
XP x64 Version 2003
XP x64 SP1

References

Tools & Filters

Nessus

18023 18028

Snort

3626

Credit

  • Fernando Gont - fernandoBrand New Doo Doogont.com.ar -

Blogs

None found at this time

Comments

No Comments.

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use