CVE-2003-1527: Medium severity iss BlackICE Server Protection vulnerability
BlackICE Defender 2.9.cap and Server Protection 3.5.cdf, when configured to automatically block attacks, allows remote attackers to block IP addresses and cause a denial of service via spoofed packets.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable the product's automatic blocking/auto-block feature so that BlackICE Defender does not automatically block IP addresses in response to detected attacks (turn off automatic block/auto-block).
IBM Internet Security Systems BlackICE Defender automatic block attacks = disabled - Configuration
Disable the product's automatic blocking/auto-block feature so that ISS BlackICE Server Protection does not automatically block IP addresses in response to detected attacks (turn off automatic block/auto-block).
ISS BlackICE Server Protection automatic block attacks = disabled
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1527?
CVE-2003-1527 is considered a high severity vulnerability due to its potential to facilitate denial of service attacks.
How do I fix CVE-2003-1527?
To mitigate CVE-2003-1527, ensure that you update BlackICE Defender and Server Protection to the latest versions that address this issue.
What software is affected by CVE-2003-1527?
CVE-2003-1527 affects BlackICE Defender 2.9.cap and Server Protection 3.5.cdf.
What is the impact of exploiting CVE-2003-1527?
Exploiting CVE-2003-1527 allows remote attackers to block IP addresses, leading to denial of service for legitimate users.
Can CVE-2003-1527 be exploited remotely?
Yes, CVE-2003-1527 can be exploited remotely through the use of spoofed packets.