CVE-2001-1533: Medium severity microsoft internet security and acceleration server vulnerability
DISPUTED Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service via a flood of fragmented UDP packets. NOTE: the vendor disputes this issue, saying that it requires high bandwidth to exploit, and the server does not experience any instability. Therefore this "laws of physics" issue might not be included in CVE.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1533?
CVE-2001-1533 is classified as a denial of service vulnerability that may affect the availability of Microsoft ISA Server 2000.
How do I fix CVE-2001-1533?
The best way to mitigate CVE-2001-1533 is to ensure that the Microsoft ISA Server 2000 is properly configured to limit the impact of fragmented UDP packet floods.
Who is affected by CVE-2001-1533?
CVE-2001-1533 affects users and organizations running Microsoft ISA Server 2000.
Can CVE-2001-1533 lead to a full system compromise?
No, CVE-2001-1533 is a denial of service vulnerability and does not lead to full system compromise.
Is there a patch available for CVE-2001-1533?
There is no official patch for CVE-2001-1533 due to the vendor's dispute regarding its impact.