CVE-2008-4609

Description

The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.

Risk Information

Base Score
8.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
1.878

Associated Vulnerability

VulnerabilityOS Platform
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2003 (KB967723)Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista (KB967723) x86 based systemsWindows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista (KB967723) x86 based systems for SP1Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista (KB967723) x86 based systems for SP2Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2008 (KB967723) x86 based systemsWindows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2008 (KB967723) x86 based systems for SP2Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2003 x64 Edition (KB967723)Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista for x64-based Systems (KB967723)Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista for x64-based Systems (KB967723) for SP1Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Vista for x64-based Systems (KB967723) for SP2Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2008 x64 Edition (KB967723)Windows
ms09-048: vulnerabilities in windows tcp/ip could allow remote code execution for Windows Server 2008 x64 Edition (KB967723) for SP2Windows
TCP State Manipulation Denial of Service Vulnerabilities in Multiple Cisco Products For Cisco IOSNCM
CVE-2008-4609NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-7532Security Update for Windows Vista (KB967723)
PATCH-7534Security Update for Windows Server 2008 (KB967723)
PATCH-7535Security Update for Windows Server 2008 (KB967723)
PATCH-7539Security Update for Windows Vista for x64-based Systems (KB967723)
PATCH-7540Security Update for Windows Server 2008 x64 Edition (KB967723)
PATCH-7541Security Update for Windows Server 2008 x64 Edition (KB967723)
PATCH-1706090Security Update for Cisco IOS Amsterdam-17.2.1r

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234