CHAT: OpenBSD IRC Denial of Service

This signature detects attempts to exploit a known vulnerability against OpenBSD. A successful attack can result in a denial-of-service condition.

Extended Description

The TCP stack (tcp_input.c) in OpenBSD 3.5 and 3.6 allows remote attackers to cause a denial of service (system panic) via crafted values in the TCP timestamp option, which causes invalid arguments to be used when calculating the retransmit timeout.

Affected Products

Openbsd openbsd

References

BugTraq: 12250

CVE: CVE-2005-0740

Short Name
CHAT:IRC:OVERFLOW:OPENBSD-DOS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
CHAT
Keywords
CVE-2005-0740 Denial IRC OpenBSD Service bid:12250 of
Release Date
11/27/2012
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
TCP/6667
False Positive
Unknown
Vendors

Openbsd

CVSS Score

5.0

Found a potential security threat?