CVE-2004-2095: Medium severity Niels Provos Honeyd vulnerability
Published Dec 31, 2004
·Updated
Honeyd before 0.8 replies to TCP packets with the SYN and RST flags set, which allows remote attackers to identify IP addresses that are being simulated by Honeyd.
Affected Software
5 affected components
Niels Provos Honeyd=0.5
Niels Provos Honeyd=0.7
Niels Provos Honeyd=0.6a
Niels Provos Honeyd=0.6
Niels Provos Honeyd=0.7a
Event History
Dec 31, 2004
CVE Published
05:00 AM
May 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2095?
CVE-2004-2095 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2004-2095?
To fix CVE-2004-2095, upgrade Honeyd to version 0.8 or later.
3
What does CVE-2004-2095 allow attackers to do?
CVE-2004-2095 allows remote attackers to identify simulated IP addresses by sending TCP packets with SYN and RST flags.
4
Which versions of Honeyd are affected by CVE-2004-2095?
CVE-2004-2095 affects Honeyd versions 0.5, 0.6, 0.6a, 0.7, and 0.7a.
5
Is there any workaround for CVE-2004-2095?
There are no known workarounds for CVE-2004-2095 other than upgrading to a non-vulnerable version.