First published: Tue Oct 15 2002(Updated: )
IBM AIX 4.3.3 and AIX 5 allows remote attackers to cause a denial of service (CPU consumption or crash) via a flood of malformed TCP packets without any flags set, which prevents AIX from releasing the associated memory buffers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5 | |
IBM AIX | =4.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-1201 is classified as a denial of service vulnerability that can lead to significant impacts on system availability.
CVE-2002-1201 allows remote attackers to flood IBM AIX systems with malformed TCP packets, causing CPU consumption or crashes.
To mitigate CVE-2002-1201, ensure that your IBM AIX system is updated to the latest supported version and consider implementing network filtering to limit malformed packets.
Yes, CVE-2002-1201 can be exploited remotely by sending a stream of malformed TCP packets to the vulnerable AIX systems.
CVE-2002-1201 affects IBM AIX versions 4.3.3 and 5.0.