CVE Vulnerabilities

CVE-2005-0740

Published: Jan 13, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The TCP stack (tcp_input.c) in OpenBSD 3.5 and 3.6 allows remote attackers to cause a denial of service (system panic) via crafted values in the TCP timestamp option, which causes invalid arguments to be used when calculating the retransmit timeout.

Affected Software

Name Vendor Start Version End Version
Openbsd Openbsd 2.0 (including) 2.0 (including)
Openbsd Openbsd 2.1 (including) 2.1 (including)
Openbsd Openbsd 2.2 (including) 2.2 (including)
Openbsd Openbsd 2.3 (including) 2.3 (including)
Openbsd Openbsd 2.4 (including) 2.4 (including)
Openbsd Openbsd 2.5 (including) 2.5 (including)
Openbsd Openbsd 2.6 (including) 2.6 (including)
Openbsd Openbsd 2.7 (including) 2.7 (including)
Openbsd Openbsd 2.8 (including) 2.8 (including)
Openbsd Openbsd 2.9 (including) 2.9 (including)
Openbsd Openbsd 3.0 (including) 3.0 (including)
Openbsd Openbsd 3.1 (including) 3.1 (including)
Openbsd Openbsd 3.2 (including) 3.2 (including)
Openbsd Openbsd 3.3 (including) 3.3 (including)
Openbsd Openbsd 3.4 (including) 3.4 (including)
Openbsd Openbsd 3.5 (including) 3.5 (including)
Openbsd Openbsd 3.6 (including) 3.6 (including)

References