Lucene search

K
cve[email protected]CVE-2003-1230
HistoryAug 17, 2005 - 4:00 a.m.

CVE-2003-1230

2005-08-1704:00:00
web.nvd.nist.gov
24
freebsd
syn cookies
vulnerability
remote attack
isn guessing

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

0.009 Low

EPSS

Percentile

82.8%

The implementation of SYN cookies (syncookies) in FreeBSD 4.5 through 5.0-RELEASE-p3 uses only 32-bit internal keys when generating syncookies, which makes it easier for remote attackers to conduct brute force ISN guessing attacks and spoof legitimate traffic.

Affected configurations

NVD
Node
freebsdfreebsdMatch4.5release
OR
freebsdfreebsdMatch4.6release
OR
freebsdfreebsdMatch4.7release
OR
freebsdfreebsdMatch4.7stable
OR
freebsdfreebsdMatch5.0release

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

0.009 Low

EPSS

Percentile

82.8%

Related for CVE-2003-1230