First published: Thu Dec 15 2005(Updated: )
Linksys WRT54GS and BEFW11S4 allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LAND). NOTE: the provenance of this issue is unknown; the details are obtained solely from the BID.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linksys BEFW11S4 v3 | ||
Linksys BEFW11S4 v3 | =1.4.3 | |
Cisco Linksys Wrt54gs Router Firmware | =4.50.6 | |
Linksys BEFW11S4 v3 | =1.43.3 | |
Cisco Linksys Wrt54gs Router Firmware | =4.70.6 | |
Linksys BEFW11S4 v3 | =1.4.2.7 | |
Linksys BEFW11S4 v3 | =1.44 | |
Linksys BEFW11S4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4257 is classified as a denial of service vulnerability that can cause a device crash.
To mitigate CVE-2005-4257, it is recommended to upgrade your firmware to the latest version provided by Linksys.
CVE-2005-4257 affects Linksys WRT54GS and BEFW11S4 routers running specific versions of their firmware.
Exploiting CVE-2005-4257 can lead to an interruption of service as the affected devices may crash.
CVE-2005-4257 can be exploited remotely by sending specially crafted IP packets, making it relatively easy for attackers.