CVE-2004-0790

Description

Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the blind connection-reset attack. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
85.133

Associated Vulnerability

VulnerabilityOS Platform
ms05-019: vulnerabilities in tcp/ip could allow remote code execution and denial of service for Windows 2000 (KB893066)Windows
ms05-019: vulnerabilities in tcp/ip could allow remote code execution and denial of service for Windows Server 2003 (KB893066)Windows
Security Update for Windows XP (KB922819)Windows
Security Update for Windows Server 2003 (KB922819) x86 based systemsWindows
Security Update for Windows Server 2003 (KB922819) x86 based systems for SP1Windows
CVE-2004-0790NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234