CVE-2002-2150
Firewalls from multiple vendors empty state tables more slowly than they are filled, which allows remote attackers to flood state tables with packet flooding attacks such as (1) TCP SYN flood, (2) UDP flood, or (3) Crikey CRC Flood, which causes the…
Does this matter?
Lower severity and a low EPSS score (1.99%). Track it; it rarely justifies an emergency change on its own.
Description
Firewalls from multiple vendors empty state tables more slowly than they are filled, which allows remote attackers to flood state tables with packet flooding attacks such as (1) TCP SYN flood, (2) UDP flood, or (3) Crikey CRC Flood, which causes the firewall to refuse any new connections.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 1.99% probability · 79th percentile
- CISA KEV
- Not listed
- Affected
- juniper/netscreen screenos
- Source
- cve@mitre.org
References
- http://www.iss.net/security_center/static/10449.php
- http://www.kb.cert.org/vuls/id/539363Third Party Advisory, US Government Resource
- http://www.securityfocus.com/bid/6023
- http://www.iss.net/security_center/static/10449.php
- http://www.kb.cert.org/vuls/id/539363Third Party Advisory, US Government Resource
- http://www.securityfocus.com/bid/6023
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.