Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
BID:5020
Info
Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
| Bugtraq ID: | 5020 |
| Class: | Design Error |
| CVE: |
CVE-2002-2185 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 14 2002 12:00AM |
| Updated: | Feb 07 2006 08:55PM |
| Credit: | Vulnerability discovery credited to [email protected], [email protected], and [email protected]. |
| Vulnerable: |
SuSE Linux 8.0 i386 SuSE Linux 7.3 sparc SuSE Linux 7.3 ppc SuSE Linux 7.3 i386 SuSE Linux 7.2 i386 SuSE Linux 7.1 x86 SuSE Linux 7.1 sparc SuSE Linux 7.1 ppc SuSE Linux 7.1 alpha SuSE Linux 7.0 sparc SuSE Linux 7.0 ppc SuSE Linux 7.0 i386 SuSE Linux 7.0 alpha SuSE Linux 6.4 ppc SuSE Linux 6.4 i386 SuSE Linux 6.4 alpha SGI IRIX 6.5.18 m SGI IRIX 6.5.18 f SGI IRIX 6.5.17 m SGI IRIX 6.5.17 f SGI IRIX 6.5.16 m SGI IRIX 6.5.16 f SGI IRIX 6.5.15 m SGI IRIX 6.5.15 f SGI IRIX 6.5.14 m SGI IRIX 6.5.14 f SGI IRIX 6.5.13 SGI IRIX 6.5.12 SGI IRIX 6.5.11 SGI IRIX 6.5.10 SGI IRIX 6.5.9 SGI IRIX 6.5.8 SGI IRIX 6.5.7 SGI IRIX 6.5.6 SGI IRIX 6.5.5 SGI IRIX 6.5.4 SGI IRIX 6.5.3 SGI IRIX 6.5.2 SGI IRIX 6.5.1 SGI IRIX 6.5 Redhat Linux 7.3 i386 Redhat Linux 7.2 ia64 Redhat Linux 7.2 i386 Redhat Linux 7.1 ia64 Redhat Linux 7.1 i386 Redhat Linux 7.1 alpha Redhat Linux 7.0 sparc Redhat Linux 7.0 i386 Redhat Linux 7.0 alpha Redhat Linux 6.2 sparc Redhat Linux 6.2 i386 Redhat Linux 6.2 alpha Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Redhat Desktop 4.0 Redhat Desktop 3.0 Redhat Advanced Workstation for the Itanium Processor 2.1 IA64 Redhat Advanced Workstation for the Itanium Processor 2.1 Microsoft Windows XP Professional Microsoft Windows XP Home Microsoft Windows 98SE Microsoft Windows 98 Mandriva Linux Mandrake 8.2 Mandriva Linux Mandrake 8.1 ia64 Mandriva Linux Mandrake 8.1 Mandriva Linux Mandrake 8.0 ppc Mandriva Linux Mandrake 8.0 Debian Linux 2.2 sparc Debian Linux 2.2 powerpc Debian Linux 2.2 IA-32 Debian Linux 2.2 arm Debian Linux 2.2 alpha Debian Linux 2.2 68k |
| Not Vulnerable: |
SGI IRIX 6.5.19 |
Discussion
Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
Internet Group Management Protocol (IGMP) specifies guidelines for the management of Internet Multicast Routing management.
An arbitrary host may deny service to a system on the same segment of network. In a situation where a multicast router sends a membership report request, a host sending a unicast membership report response to the primary responder can prevent the responder from sending a message to the multicast router. In doing so, the router will not receive a response from any host, and thus the transmission will timeout and cease.
This vulnerability may additionally affect other operating systems, though it is currently unknown which implementations may be vulnerable.
Internet Group Management Protocol (IGMP) specifies guidelines for the management of Internet Multicast Routing management.
An arbitrary host may deny service to a system on the same segment of network. In a situation where a multicast router sends a membership report request, a host sending a unicast membership report response to the primary responder can prevent the responder from sending a message to the multicast router. In doing so, the router will not receive a response from any host, and thus the transmission will timeout and cease.
This vulnerability may additionally affect other operating systems, though it is currently unknown which implementations may be vulnerable.
Exploit / POC
Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
Solution:
Please see the referenced advisories for more information:
- SGI has released a new advisory. Users are advised to upgrade to IRIX 6.5.19 or to apply the following fixes.
- Red Hat has released advisory RHSA-2006:0101-9, along with fixes to address various Linux Kernel issues in Red Hat Enterprise Linux 4 operating systems.
- Red Hat has released advisory RHSA-2006:0140-9 to address various issues in Red Hat Enterprise Linux 3.
- Red Hat has released advisory RHSA-2006:0190-5 to address this and other issues.
The following fixes are available:
SGI IRIX 6.5.14 f
SGI IRIX 6.5.14 m
SGI IRIX 6.5.15 m
SGI IRIX 6.5.15 f
SGI IRIX 6.5.16 f
SGI IRIX 6.5.16 m
SGI IRIX 6.5.17 m
SGI IRIX 6.5.17 f
SGI IRIX 6.5.18 m
SGI IRIX 6.5.18 f
Solution:
Please see the referenced advisories for more information:
- SGI has released a new advisory. Users are advised to upgrade to IRIX 6.5.19 or to apply the following fixes.
- Red Hat has released advisory RHSA-2006:0101-9, along with fixes to address various Linux Kernel issues in Red Hat Enterprise Linux 4 operating systems.
- Red Hat has released advisory RHSA-2006:0140-9 to address various issues in Red Hat Enterprise Linux 3.
- Red Hat has released advisory RHSA-2006:0190-5 to address this and other issues.
The following fixes are available:
SGI IRIX 6.5.14 f
SGI IRIX 6.5.14 m
SGI IRIX 6.5.15 m
SGI IRIX 6.5.15 f
SGI IRIX 6.5.16 f
SGI IRIX 6.5.16 m
SGI IRIX 6.5.17 m
SGI IRIX 6.5.17 f
SGI IRIX 6.5.18 m
SGI IRIX 6.5.18 f
References
Multiple Vendor Spoofed IGMP Report Denial Of Service Vulnerability
References:
References:
- IGMP Denial of Service Vulnerability (Krishna N. Ramachandran)
- RHSA-2006:0101-9 - kernel security update (RedHat)
- RHSA-2006:0140-9 - kernel security update (RedHat)
- RHSA-2006:0190-5 - kernel security update (RedHat)