Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-4609

Опубликовано: 20 окт. 2008
Источник: debian
EPSS Низкий

Описание

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxunfixedpackage
linux-2.6removedpackage
linux-2.6.24removedpackage

Примечания

  • this is a design flaw in TCP itself; maximum impact is a denial-of-service

  • there is no upstream solution

  • see http://kbase.redhat.com/faq/docs/DOC-18730 for possible mitigation via iptables

  • also see usage of ipt_connlimit as a mitigation strategy

EPSS

Процентиль: 63%
0.00465
Низкий

Связанные уязвимости

ubuntu
почти 17 лет назад

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

redhat
около 16 лет назад

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

nvd
почти 17 лет назад

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

github
больше 3 лет назад

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

EPSS

Процентиль: 63%
0.00465
Низкий