Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:8996
HistoryJun 29, 2005 - 12:00 a.m.

[SA15851] Blue Coat Products TCP Timestamp Denial of Service

2005-06-2900:00:00
vulners.com
18

0.931 High

EPSS

Percentile

99.1%


Bist Du interessiert an einem neuen Job in IT-Sicherheit?

Secunia hat zwei freie Stellen als Junior und Senior Spezialist in IT-
Sicherheit:
http://secunia.com/secunia_vacancies/


TITLE:
Blue Coat Products TCP Timestamp Denial of Service

SECUNIA ADVISORY ID:
SA15851

VERIFY ADVISORY:
http://secunia.com/advisories/15851/

CRITICAL:
Less critical

IMPACT:
DoS

WHERE:
>From remote

OPERATING SYSTEM:
Blue Coat CacheOS 3.x
http://secunia.com/product/2133/
Blue Coat CacheOS 4.x
http://secunia.com/product/2213/
Blue Coat Security Gateway OS (SGOS) 2.x
http://secunia.com/product/2132/
Blue Coat Security Gateway OS (SGOS) 3.x
http://secunia.com/product/2214/

DESCRIPTION:
Blue Coat has acknowledged a vulnerability in some products, which
can be exploited by malicious people to cause a DoS (Denial of
Service) on an active TCP session.

For more information:
SA15393

The vulnerability affects all versions of CacheOS and SGOS.

SOLUTION:
The vendor recommends disabling RFC1323 support until a patch is
available.

ORIGINAL ADVISORY:
http://www.bluecoat.com/support/knowledge/advisory_tcp_can-2005-0356.html

OTHER REFERENCES:
SA15393:
http://secunia.com/advisories/15393/


About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.

Subscribe:
http://secunia.com/secunia_security_advisories/

Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/

Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.