Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
BID:10881
Info
Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
| Bugtraq ID: | 10881 |
| Class: | Design Error |
| CVE: |
CVE-2004-0641 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 05 2004 12:00AM |
| Updated: | Jul 12 2009 06:16AM |
| Credit: | Discovery of this vulnerability is credited to an anonymous source. |
| Vulnerable: |
Thomson SpeedTouch 510 ADSL Router |
| Not Vulnerable: | |
Discussion
Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
A vulnerability is reported to exist in the algorithms used by Thomson SpeedTouch Home ADSL Modem to generate initial TCP sequence numbers. The ability to predict TCP sequence numbers may allow a remote attacker to inject packets into a vulnerable data stream, for example the telnet service on the affected modem.
A vulnerability is reported to exist in the algorithms used by Thomson SpeedTouch Home ADSL Modem to generate initial TCP sequence numbers. The ability to predict TCP sequence numbers may allow a remote attacker to inject packets into a vulnerable data stream, for example the telnet service on the affected modem.
Exploit / POC
Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Thomson SpeedTouch Home ADSL Modem Predictable Initial TCP Sequence Number Vulnerability
References:
References: