CVE-2004-0230

Description

TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.

Risk Information

Base Score
8.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
9.318

Associated Vulnerability

VulnerabilityOS Platform
ms05-019: vulnerabilities in tcp/ip could allow remote code execution and denial of service for Windows 2000 (KB893066)Windows
ms05-019: vulnerabilities in tcp/ip could allow remote code execution and denial of service for Windows Server 2003 (KB893066)Windows
Security Update for Windows XP (KB922819)Windows
Security Update for Windows Server 2003 (KB922819) x86 based systemsWindows
Security Update for Windows Server 2003 (KB922819) x86 based systems for SP1Windows
CVE-2004-0230NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234