Beck IPC GmbH IPC@CHIP SYN Flood DoS Vulnerability
BID:2768
Info
Beck IPC GmbH IPC@CHIP SYN Flood DoS Vulnerability
| Bugtraq ID: | 2768 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 24 2001 12:00AM |
| Updated: | May 24 2001 12:00AM |
| Credit: | Discovered and posted to Bugtraq by Siberian <[email protected]> on May 24, 2001. |
| Vulnerable: |
Beck IPC GmbH IPC@CHIP Embedded-Webserver |
| Not Vulnerable: | |
Discussion
Beck IPC GmbH IPC@CHIP SYN Flood DoS Vulnerability
By sending many TCP SYN packets to a vulnerable server, an attacker can cause a host running IPC@CHIP to refuse all new TCP/IP client connections until the system is restarted.
* Conflicting reports exist. According to Beck IPC's testing of IPC@CHIP, the server is properly limiting the number of simultaneous connections and is therefore not subject to this issue.
By sending many TCP SYN packets to a vulnerable server, an attacker can cause a host running IPC@CHIP to refuse all new TCP/IP client connections until the system is restarted.
* Conflicting reports exist. According to Beck IPC's testing of IPC@CHIP, the server is properly limiting the number of simultaneous connections and is therefore not subject to this issue.
Exploit / POC
Beck IPC GmbH IPC@CHIP SYN Flood DoS Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.