CVE-2004-0230

Analyzed
Published: 05 May 2004, 04:00
Last modified:08 Aug 2024, 00:10

Vulnerability Summary

Overall Risk (default)
medium
32/100
CVSS Score
5 MEDIUM
v2.0 (nvd)
EPSS Score
9.32% LOW
9% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
8 found
Dark Web
Not detected

Timeline

05 May 2004, 04:00
Published
Vulnerability first disclosed
08 Aug 2024, 00:10
Last Modified
Vulnerability information updated

Description

TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.

CVSS Metrics

  • v2.0MEDIUMScore: 5AV:N/AC:L/Au:N/C:N/I:N/A:P

EPSS Trends

Current EPSS score: 9.32% Percentile: 93%

Affected Systems

  • juniperjunos

    < 11.4 | 11.4 | 11.4:r1 | 11.4:r10 | 11.4:r2 | 11.4:r3 | 11.4:r4 | 11.4:r5 | 11.4:r6 | 11.4:r7 | 11.4:r8 | 11.4:r9 | 11.4r13:s2 | 11.4x27 | 12.1 | 12.1r | 12.1x44 | 12.1x44:d10 | 12.1x44:d15 | 12.1x44:d20 | 12.1x44:d25 | 12.1x44:d30 | 12.1x44:d35 | 12.1x45 | 12.1x45:d10 | 12.1x45:d15 | 12.1x45:d20 | 12.1x46 | 12.1x46:d10 | 12.1x46:d15 | 12.1x47 | 12.2 | 12.2:r1 | 12.2:r2 | 12.2:r3 | 12.2:r4 | 12.2:r5 | 12.2:r6 | 12.2:r7 | 12.3 | 12.3:r1 | 12.3:r2 | 12.3:r3 | 12.3:r4 | 12.3:r5 | 13.1 | 13.1:r1 | 13.1:r2 | 13.1:r3 | 13.2 | 13.2:r1 | 13.2:r2 | 13.2:r3 | 13.3 | 13.3:r1

  • mcafeenetwork_data_loss_prevention

    ≤ 8.6 | 9.2.0 | 9.2.1 | 9.2.2

  • microsoftwindows_2000

    na

  • microsoftwindows_98

    na

  • microsoftwindows_98se

    na

  • microsoftwindows_server_2003

    na

  • microsoftwindows_xp

    na

  • netbsdnetbsd

    1.5 | 1.5.1 | 1.5.2 | 1.5.3 | 1.6 | 1.6.1 | 1.6.2 | 2.0

  • openpgpopenpgp

    2.6.2

  • UnknownSolaris

    10 | 11

  • xinuosopenserver

    5.0.6 | 5.0.7

  • xinuosunixware

    7.1.1 | 7.1.3

References (29)