← All CVEs

CVE-2001-1244

medium · 5

Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.

5
CVSS
22.0%
EPSS (exploit prob.)
98th
EPSS percentile
2001-07-07
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
freebsdfreebsd4.3
hphp-ux11.00
hphp-ux11.0.4
hphp-ux11.11
hpvvos11.04
linuxlinux_kernel2.4.0
linuxlinux_kernel2.4.1
linuxlinux_kernel2.4.2
linuxlinux_kernel2.4.3
linuxlinux_kernel2.4.4
linuxlinux_kernel2.4.5
microsoftwindows_2000all versions
microsoftwindows_2000all versions
microsoftwindows_2000all versions
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
microsoftwindows_nt4.0
netbsdnetbsd1.5
netbsdnetbsd1.5.1
openbsdopenbsd2.8
openbsdopenbsd2.9
sunsunos5.5.1
sunsunos5.7
sunsunos5.8

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2001-1244