Lucene search

K
cveMitreCVE-2004-0002
HistoryMar 03, 2004 - 5:00 a.m.

CVE-2004-0002

2004-03-0305:00:00
mitre
web.nvd.nist.gov
33
cve-2004-0002
tcp mss
netinet
denial of service
resource exhaustion
vulnerability
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7

Confidence

High

EPSS

0.003

Percentile

70.0%

The TCP MSS (maximum segment size) functionality in netinet allows remote attackers to cause a denial of service (resource exhaustion) via (1) a low MTU, which causes a large number of small packets to be produced, or (2) via a large number of packets with a small TCP payload, which cause a large number of calls to the resource-intensive sowakeup function.

Affected configurations

Nvd
Node
freebsdfreebsdMatch3.0
OR
freebsdfreebsdMatch3.0releng
OR
freebsdfreebsdMatch3.1
OR
freebsdfreebsdMatch3.2
OR
freebsdfreebsdMatch3.3
OR
freebsdfreebsdMatch3.4
OR
freebsdfreebsdMatch3.5
OR
freebsdfreebsdMatch3.5stable
OR
freebsdfreebsdMatch3.5.1
OR
freebsdfreebsdMatch3.5.1release
OR
freebsdfreebsdMatch3.5.1stable
OR
freebsdfreebsdMatch4.0
OR
freebsdfreebsdMatch4.0alpha
OR
freebsdfreebsdMatch4.0releng
OR
freebsdfreebsdMatch4.1
OR
freebsdfreebsdMatch4.1.1
OR
freebsdfreebsdMatch4.1.1release
OR
freebsdfreebsdMatch4.1.1stable
OR
freebsdfreebsdMatch4.2
OR
freebsdfreebsdMatch4.2stable
OR
freebsdfreebsdMatch4.3
OR
freebsdfreebsdMatch4.3release
OR
freebsdfreebsdMatch4.3release_p38
OR
freebsdfreebsdMatch4.3releng
OR
freebsdfreebsdMatch4.3stable
OR
freebsdfreebsdMatch4.4
OR
freebsdfreebsdMatch4.4release_p42
OR
freebsdfreebsdMatch4.4releng
OR
freebsdfreebsdMatch4.4stable
OR
freebsdfreebsdMatch4.5
OR
freebsdfreebsdMatch4.5release
OR
freebsdfreebsdMatch4.5release_p32
OR
freebsdfreebsdMatch4.5releng
OR
freebsdfreebsdMatch4.5stable
OR
freebsdfreebsdMatch4.6
OR
freebsdfreebsdMatch4.6release
OR
freebsdfreebsdMatch4.6release_p20
OR
freebsdfreebsdMatch4.6releng
OR
freebsdfreebsdMatch4.6stable
OR
freebsdfreebsdMatch4.6.2
OR
freebsdfreebsdMatch4.7
OR
freebsdfreebsdMatch4.7release
OR
freebsdfreebsdMatch4.7release_p17
OR
freebsdfreebsdMatch4.7releng
OR
freebsdfreebsdMatch4.7stable
OR
freebsdfreebsdMatch4.8
OR
freebsdfreebsdMatch4.8pre-release
OR
freebsdfreebsdMatch4.8release_p6
OR
freebsdfreebsdMatch4.8releng
OR
freebsdfreebsdMatch4.9
OR
freebsdfreebsdMatch4.9pre-release
OR
freebsdfreebsdMatch5.0
OR
freebsdfreebsdMatch5.0alpha
OR
freebsdfreebsdMatch5.0release_p14
OR
freebsdfreebsdMatch5.0releng
OR
freebsdfreebsdMatch5.1
OR
freebsdfreebsdMatch5.1release_p5
OR
freebsdfreebsdMatch5.1releng
OR
freebsdfreebsdMatch5.2
VendorProductVersionCPE
freebsdfreebsd3.0cpe:2.3:o:freebsd:freebsd:3.0:*:*:*:*:*:*:*
freebsdfreebsd3.0cpe:2.3:o:freebsd:freebsd:3.0:releng:*:*:*:*:*:*
freebsdfreebsd3.1cpe:2.3:o:freebsd:freebsd:3.1:*:*:*:*:*:*:*
freebsdfreebsd3.2cpe:2.3:o:freebsd:freebsd:3.2:*:*:*:*:*:*:*
freebsdfreebsd3.3cpe:2.3:o:freebsd:freebsd:3.3:*:*:*:*:*:*:*
freebsdfreebsd3.4cpe:2.3:o:freebsd:freebsd:3.4:*:*:*:*:*:*:*
freebsdfreebsd3.5cpe:2.3:o:freebsd:freebsd:3.5:*:*:*:*:*:*:*
freebsdfreebsd3.5cpe:2.3:o:freebsd:freebsd:3.5:stable:*:*:*:*:*:*
freebsdfreebsd3.5.1cpe:2.3:o:freebsd:freebsd:3.5.1:*:*:*:*:*:*:*
freebsdfreebsd3.5.1cpe:2.3:o:freebsd:freebsd:3.5.1:release:*:*:*:*:*:*
Rows per page:
1-10 of 591

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7

Confidence

High

EPSS

0.003

Percentile

70.0%

Related for CVE-2004-0002