CVE-2002-1203

IBM SecureWay Firewall <4.2.2 - DoS

Title source: llm
STIX 2.1

Description

IBM SecureWay Firewall before 4.2.2 performs extra processing before determining that a packet is invalid and dropping it, which allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed TCP packets without any flags set.

References (3)

Core 3
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=103417988503398&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5924
Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/10249.php

Scores

EPSS 0.0166
EPSS Percentile 74.2%

Details

CWE
CWE-399
Status published
Products (2)
ibm/secureway_firewall 4.2
ibm/secureway_firewall 4.2.1
Published Oct 28, 2002
Tracked Since Feb 18, 2026