Bugtraq mailing list archives

3Com's TippingPoint Denial of Service


From: mike20061005 () webmail co za
Date: Tue, 24 Apr 2007 23:24:34 +0200 (SAST)

Vulnerability:       Denial of Service
Affected Product:    3Com's TippingPoint IPS
Affected Versions:   All

Author:              Corroded_Lunchmeats_X



Issue:
======

TippingPoint IPS is prone to DoS when a sequence of crafted packets are
destined for port 80.



Details:
========

When quickly flooded with packets destined for port 80, and an incrementing
source port this causes the software to consume a huge amount of CPU time,
due to a badly written loop, causing the device to stop responding.



Credits:
========

The Kinders Kricket Krew, Aunty_Richard, The dinosaurs who died in the
explosion.



Disclaimer:
===========

This  document and all the information it contains are provided "as is",
for educational purposes only, without warranty  of  any  kind,  whether
express or implied.

The  authors reserve the right not to be responsible for the topicality,
correctness, completeness or quality of  the  information   provided  in
this  document.  Liability  claims regarding damage caused by the use of
any information provided, including any kind  of  information  which  is
incomplete or incorrect, will therefore be rejected.



-------------------------------------------
South Africas premier free email service - www.webmail.co.za 
------------------------------------------------------------------
For super low premiums, click here http://www.webmail.co.za/dd.pwm


Current thread: