BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability
BID:9792
Info
BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability
| Bugtraq ID: | 9792 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2004-0171 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 02 2004 12:00AM |
| Updated: | Jul 12 2009 03:06AM |
| Credit: | Vulnerability discovery credited to Alexander Cuttergo. |
| Vulnerable: |
SGI IRIX 6.5.25 SGI IRIX 6.5.24 SGI IRIX 6.5.23 SGI IRIX 6.5.22 OpenBSD OpenBSD 3.4 OpenBSD OpenBSD 3.3 FreeBSD FreeBSD 5.2 FreeBSD FreeBSD 5.1 FreeBSD FreeBSD 5.0 FreeBSD FreeBSD 4.9 FreeBSD FreeBSD 4.8 FreeBSD FreeBSD 4.7 FreeBSD FreeBSD 4.6.2 F5 BIG-IP 4.5.11 F5 BIG-IP 4.5.10 F5 BIG-IP 4.5.9 F5 BIG-IP 4.5.6 F5 BIG-IP 4.5 F5 BIG-IP 4.4 F5 BIG-IP 4.3 F5 BIG-IP 4.2 F5 BIG-IP 2.1 F5 BIG-IP 2.0 F5 3-DNS 4.6.2 F5 3-DNS 4.6 F5 3-DNS 4.5 F5 3-DNS 4.4 F5 3-DNS 4.3 F5 3-DNS 4.2 BorderWare Firewall Server 7.0 |
| Not Vulnerable: | |
Discussion
BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability
A problem in the handling of out-of-sequence packets has been identified in BSD variants such as FreeBSD and OpenBSD. Because of this, it may be possible for remote attackers to deny service to legitimate users of vulnerable systems.
A problem in the handling of out-of-sequence packets has been identified in BSD variants such as FreeBSD and OpenBSD. Because of this, it may be possible for remote attackers to deny service to legitimate users of vulnerable systems.
Exploit / POC
Solution / Fix
BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability
Solution:
Fixes for certain FreeBSD revisions have been made available to correct this issue.
SGI has released an advisory (20040905-01-P) and updates dealing with this issue for affected IRIX platforms. Customers are advised to see the referenced advisory for further information regarding obtaining and applying appropriate updates.
BorderWare has released patches dealing with this issue for their Firewall Server product. Please contact the vendor for more information and details on obtaining the patch.
F5 BIG-IP and 3-DNS are also reportedly affected by this issue. Customers with AskF5 access may find instructions on obtaining and applying patches at the following location:
http://tech.f5.com/home/bigip/solutions/advisories/sol3369.html
F5 customers may also contact [email protected] for further details.
Patches have also been made available for OpenBSD.
OpenBSD OpenBSD 3.3
OpenBSD OpenBSD 3.4
FreeBSD FreeBSD 4.8
FreeBSD FreeBSD 4.9
FreeBSD FreeBSD 5.2
SGI IRIX 6.5.22
SGI IRIX 6.5.23
SGI IRIX 6.5.24
SGI IRIX 6.5.25
Solution:
Fixes for certain FreeBSD revisions have been made available to correct this issue.
SGI has released an advisory (20040905-01-P) and updates dealing with this issue for affected IRIX platforms. Customers are advised to see the referenced advisory for further information regarding obtaining and applying appropriate updates.
BorderWare has released patches dealing with this issue for their Firewall Server product. Please contact the vendor for more information and details on obtaining the patch.
F5 BIG-IP and 3-DNS are also reportedly affected by this issue. Customers with AskF5 access may find instructions on obtaining and applying patches at the following location:
http://tech.f5.com/home/bigip/solutions/advisories/sol3369.html
F5 customers may also contact [email protected] for further details.
Patches have also been made available for OpenBSD.
OpenBSD OpenBSD 3.3
-
OpenBSD 018_tcp.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.3/common/018_tcp.patch
OpenBSD OpenBSD 3.4
-
OpenBSD 013_tcp.patch
ftp://ftp.openbsd.org/pub/OpenBSD/patches/3.4/common/013_tcp.patch
FreeBSD FreeBSD 4.8
-
FreeBSD tcp47.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-04:04/tcp47.patch
FreeBSD FreeBSD 4.9
-
FreeBSD tcp47.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-04:04/tcp47.patch
FreeBSD FreeBSD 5.2
-
FreeBSD tcp52.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-04:04/tcp52.patch
SGI IRIX 6.5.22
SGI IRIX 6.5.23
SGI IRIX 6.5.24
SGI IRIX 6.5.25
References
BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability
References:
References:
- Firewall Server Home Page (BorderWare)
- FreeBSD Homepage (FreeBSD)
- FreeBSD Memory Buffer Exhaustion Denial of Service Vulnerability (iDEFENSE)
- Fwd: [is this mbuf problem real?] ("Jacques A. Vidrine"
) - OpenBSD Homepage (OpenBSD)
- Vendor Home Page (BorderWare)