CVE-2004-1435

Cisco Optical Networking Systems Software - Denial of Service via TCP-ACK Flood

Title source: llm
STIX 2.1

Description

Multiple versions of Cisco ONS 15327, ONS 15454, and ONS 15454 SDH, including 4.6(0) and 4.6(1), 4.5(x), 4.1(0) to 4.1(3), 4.0(0) to 4.0(2), and earlier versions, allows remote attackers to cause a denial of service (control card reset) via a large number of TCP connections with an invalid response instead of the final ACK (TCP-ACK).

References (5)

Core 5
Core References
Vendor Advisory vendor-advisory x_refsource_cisco
http://www.cisco.com/warp/public/707/cisco-sa-20040721-ons.shtml
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/12117
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10768
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/277048
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16763

Scores

EPSS 0.0316
EPSS Percentile 86.7%

Details

Status published
Products (23)
cisco/optical_networking_systems_software 1.0
cisco/optical_networking_systems_software 1.1
cisco/optical_networking_systems_software 1.1\(0\)
cisco/optical_networking_systems_software 1.1\(1\)
cisco/optical_networking_systems_software 1.3\(0\)
cisco/optical_networking_systems_software 2.3\(5\)
cisco/optical_networking_systems_software 3.0
cisco/optical_networking_systems_software 3.1.0
cisco/optical_networking_systems_software 3.2
cisco/optical_networking_systems_software 3.2.0
... and 13 more
Published Dec 31, 2004
Tracked Since Feb 18, 2026