|
|
|
|
|
|
|
| |
TCP/IP Sequence Prediction Blind Reset Spoofing DoS |
|
| This script is (C) 2004-2010 Tenable Network Security, Inc. |
|
|
| Family | Denial of Service |
| Nessus Plugin ID | 12213 (tcp_seq_window.nasl) |
| Bugtraq ID | 10183
|
| CVE ID | CVE-2004-0230
|
|
| Description: |
Synopsis :
It may be possible to send spoofed RST packets to the remote
system.
Description :
The remote host might be vulnerable to a sequence number
approximation bug, which may allow an attacker to send
spoofed RST packets to the remote host and close established
connections. This may cause problems for some dedicated
services (BGP, a VPN over TCP, etc...).
Solution :
See http://www.securityfocus.com/bid/10183/solution/
Risk factor :
Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
|
|
|
|
|
|