CVE Vulnerabilities

CVE-2005-0740

Published: Jan 13, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The TCP stack (tcp_input.c) in OpenBSD 3.5 and 3.6 allows remote attackers to cause a denial of service (system panic) via crafted values in the TCP timestamp option, which causes invalid arguments to be used when calculating the retransmit timeout.

Affected Software

NameVendorStart VersionEnd Version
OpenbsdOpenbsd2.0 (including)2.0 (including)
OpenbsdOpenbsd2.1 (including)2.1 (including)
OpenbsdOpenbsd2.2 (including)2.2 (including)
OpenbsdOpenbsd2.3 (including)2.3 (including)
OpenbsdOpenbsd2.4 (including)2.4 (including)
OpenbsdOpenbsd2.5 (including)2.5 (including)
OpenbsdOpenbsd2.6 (including)2.6 (including)
OpenbsdOpenbsd2.7 (including)2.7 (including)
OpenbsdOpenbsd2.8 (including)2.8 (including)
OpenbsdOpenbsd2.9 (including)2.9 (including)
OpenbsdOpenbsd3.0 (including)3.0 (including)
OpenbsdOpenbsd3.1 (including)3.1 (including)
OpenbsdOpenbsd3.2 (including)3.2 (including)
OpenbsdOpenbsd3.3 (including)3.3 (including)
OpenbsdOpenbsd3.4 (including)3.4 (including)
OpenbsdOpenbsd3.5 (including)3.5 (including)
OpenbsdOpenbsd3.6 (including)3.6 (including)

References