18082Third-party advisory
http://secunia.com/advisories/18082 CVE-2005-4316
Microsoft Windows XP - TCP Packet Fragmentation Handling Denial of Service (1)
Record summary
CVE-2005-4316 has a selected CVSS score of 7.8; EIP currently links 4 catalogued exploits.
Description
HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 4
Proofs of concept
4Catalogued exploits
ExploitDBMicrosoft Windows XP - TCP Packet Fragmentation Handling Denial of Service (1)ExploitDB exploitby CoolioNot analyzed1 file
ExploitDBMicrosoft Windows XP - TCP Packet Fragmentation Handling Denial of Service (2)ExploitDB exploitby CoolioNot analyzed1 file
ExploitDBMicrosoft Windows XP - TCP Packet Fragmentation Handling Denial of Service (3)ExploitDB exploitby Ken HollisNot analyzed1 file
ExploitDBMicrosoft Windows XP - TCP Packet Fragmentation Handling Denial of Service (4)ExploitDB exploitby Ken HollisNot analyzed1 file
References
1019086Third-party advisory
http://secunia.com/advisories/19086 1015361vdb entry
http://securitytracker.com/id?1015361 support.avaya.comConfirmation
http://support.avaya.com/elmodocs2/security/ASA-2006-062.htm 20040927 IPv4 fragmentation --> The Rose Attackmailing list
http://www.securityfocus.com/archive/1/376490 SSRT4728Vendor advisory
http://www.securityfocus.com/archive/1/419594/100/0/threaded 11258vdb entry
http://www.securityfocus.com/bid/11258 ADV-2005-2945vdb entry
http://www.vupen.com/english/advisories/2005/2945 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-4316 oval:org.mitre.oval:def:5760vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5760