Vulnerability Name:

CVE-2004-0171 (CCN-15369)

Assigned:2004-03-01
Published:2004-03-01
Updated:2017-10-10
Summary:FreeBSD 5.1 and earlier, and Mac OS X before 10.3.4, allows remote attackers to cause a denial of service (resource exhaustion of memory buffers and system crash) via a large number of out-of-sequence TCP packets, which prevents the operating system from creating new connections.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Denial of Service
References:Source: CCN
Type: FreeBSD Security Advisory FreeBSD-SA-04:04
many out-of-sequence TCP packets denial-of-service

Source: FREEBSD
Type: UNKNOWN
FreeBSD-SA-04:04

Source: MITRE
Type: CNA
CVE-2004-0171

Source: CCN
Type: FreeBSD Security Mailing List, Wed, 18 Feb 2004 16:02:30 -0600
Fwd: [is this mbuf problem real?]

Source: APPLE
Type: UNKNOWN
APPLE-SA-2004-05-28

Source: IDEFENSE
Type: Patch, Vendor Advisory
20040302 FreeBSD Memory Buffer Exhaustion Denial of Service Vulnerability

Source: CCN
Type: US-CERT VU#395670
FreeBSD fails to limit number of TCP segments held in reassembly queue

Source: CERT-VN
Type: US Government Resource
VU#395670

Source: OSVDB
Type: UNKNOWN
4124

Source: CCN
Type: OSVDB ID: 4124
Multiple BSD mbufs Out-of-Sequence TCP Packet DoS

Source: BID
Type: Patch, Vendor Advisory
9792

Source: CCN
Type: BID-9792
BSD Out Of Sequence Packets Remote Denial Of Service Vulnerability

Source: XF
Type: UNKNOWN
freebsd-mbuf-dos(15369)

Source: XF
Type: UNKNOWN
freebsd-mbuf-dos(15369)

Vulnerable Configuration:Configuration 1:
  • cpe:/o:freebsd:freebsd:4.6.2:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:4.7:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:4.8:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:4.9:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:5.0:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:5.1:-:*:*:*:*:*:*
  • OR cpe:/o:freebsd:freebsd:5.2:-:*:*:*:*:*:*
  • OR cpe:/o:openbsd:openbsd:3.3:*:*:*:*:*:*:*
  • OR cpe:/o:openbsd:openbsd:3.4:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:freebsd:freebsd:5.1:-:*:*:*:*:*:*
  • AND
  • cpe:/o:freebsd:freebsd:4.0:*:*:*:*:*:*:*
  • OR cpe:/o:sgi:irix:6.5.24:*:*:*:*:*:*:*
  • OR cpe:/o:sgi:irix:6.5.22:*:*:*:*:*:*:*
  • OR cpe:/o:sgi:irix:6.5.23:*:*:*:*:*:*:*
  • OR cpe:/o:sgi:irix:6.5.25:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    freebsd freebsd 4.6.2
    freebsd freebsd 4.7
    freebsd freebsd 4.8
    freebsd freebsd 4.9
    freebsd freebsd 5.0
    freebsd freebsd 5.1
    freebsd freebsd 5.2
    openbsd openbsd 3.3
    openbsd openbsd 3.4
    freebsd freebsd 5.1
    freebsd freebsd 4.0
    sgi irix 6.5.24
    sgi irix 6.5.22
    sgi irix 6.5.23
    sgi irix 6.5.25