Vulnerability Name: | CCN-118947 | ||||||
Published: | 2016-11-15 | ||||||
Updated: | 2016-11-15 | ||||||
Summary: | Multiple products are vulnerable to a denial of service. By sending specially crafted ICMP with Type 3 Code 3 packets to target firewall devices that have ICMP enabled on the outside, an attacker could exploit this vulnerability to cause high CPU usage and prevent internal traffic from reaching the internet.
Note: This vulnerability is known at the "BlackNurse" attack. | ||||||
CVSS v3 Severity: | 7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) 7.1 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:U/RC:C)
| ||||||
CVSS v2 Severity: | 7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
| ||||||
Vulnerability Consequences: | Denial of Service | ||||||
References: | Source: CCN Type: BlackNurse Web site BlackNurse Source: XF Type: UNKNOWN multiple-blacknurse-dos(118947) Source: CCN Type: Packet Storm Security [11-15-2016] BlackNurse Spoofed ICMP Denial Of Service Proof Of Concept | ||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||
BACK |