CVE-2008-4609
high · 7.1The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.
7.1
CVSS
32.1%
EPSS (exploit prob.)
98th
EPSS percentile
2008-10-20
Published
AV:N/AC:M/Au:N/C:N/I:N/A:C
Weaknesses
CWE-16
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| bsd | bsd | all versions |
| bsd | bsd | 4.1 |
| bsd | bsd | 4.2 |
| bsd | bsd | 4.3 |
| bsd | bsd | 4.4 |
| bsdi | bsd_os | all versions |
| bsdi | bsd_os | 1.1 |
| bsdi | bsd_os | 2.0 |
| bsdi | bsd_os | 2.0.1 |
| bsdi | bsd_os | 2.1 |
| bsdi | bsd_os | 3.0 |
| bsdi | bsd_os | 3.1 |
| bsdi | bsd_os | 3.2 |
| bsdi | bsd_os | 4.0 |
| bsdi | bsd_os | 4.0.1 |
| bsdi | bsd_os | 4.1 |
| bsdi | bsd_os | 4.2 |
| cisco | ios | all versions |
| cisco | ios | 4.1 |
| cisco | ios | 4.1.1 |
| cisco | ios | 4.1.2 |
| cisco | ios | 8.2 |
| cisco | ios | 8.3 |
| cisco | ios | 9.0 |
| cisco | ios | 9.1 |
| cisco | ios | 9.14 |
| cisco | ios | 10.0 |
| cisco | ios | 10.3 |
| cisco | ios | 10.3(3.3) |
| cisco | ios | 10.3(3.4) |
| cisco | ios | 10.3(4.2) |
| cisco | ios | 10.3(4.3) |
| cisco | ios | 10.3(16) |
| cisco | ios | 10.3(19a) |
| cisco | ios | 11 |
| cisco | ios | 11.0 |
| cisco | ios | 11.0(12) |
| cisco | ios | 11.0(17) |
| cisco | ios | 11.0(17)bt |
| cisco | ios | 11.0(18) |
Check a specific version with /api/v1/cve/match.
References
- http://blog.robertlee.name/2008/10/conjecture-speculation.html
- http://insecure.org/stf/tcp-dos-attack-explained.html
- http://lists.immunitysec.com/pipermail/dailydave/2008-October/005360.html
- http://marc.info/?l=bugtraq&m=125856010926699&w=2
- http://searchsecurity.techtarget.com.au/articles/27154-TCP-is-fundamentally-borked
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080af511d.shtml
- http://www.cisco.com/en/US/products/products_security_response09186a0080a15120.html
- http://www.cpni.gov.uk/Docs/tn-03-09-security-assessment-TCP.pdf
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpujul2012-392727.html
- http://www.outpost24.com/news/news-2008-10-02.html
- http://www.us-cert.gov/cas/techalerts/TA09-251A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-048
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6340
- https://www.cert.fi/haavoittuvuudet/2008/tcp-vulnerabilities.html
- http://blog.robertlee.name/2008/10/conjecture-speculation.html
- http://insecure.org/stf/tcp-dos-attack-explained.html
- http://lists.immunitysec.com/pipermail/dailydave/2008-October/005360.html
- http://marc.info/?l=bugtraq&m=125856010926699&w=2
- http://searchsecurity.techtarget.com.au/articles/27154-TCP-is-fundamentally-borked
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080af511d.shtml
- http://www.cisco.com/en/US/products/products_security_response09186a0080a15120.html
- http://www.cpni.gov.uk/Docs/tn-03-09-security-assessment-TCP.pdf
- http://www.mandriva.com/security/advisories?name=MDVSA-2013:150
- http://www.oracle.com/technetwork/topics/security/cpujul2012-392727.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2008-4609