First published: Fri Dec 16 2005(Updated: )
Scientific Atlanta DPX2100 Cable Modem allows remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD), as demonstrated using hping2. NOTE: the provenance of this issue is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Scientific Atlanta DPX/EPX2100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4275 is considered a high severity vulnerability due to its potential to cause a denial of service by crashing the device.
To mitigate CVE-2005-4275, disable remote management features on the Scientific Atlanta DPX2100 Cable Modem when not needed and apply any available firmware updates.
CVE-2005-4275 is associated with a denial of service attack that exploits specific characteristics of IP packet handling.
CVE-2005-4275 specifically affects the Scientific Atlanta DPX2100 Cable Modem.
The provenance of CVE-2005-4275 is unknown, suggesting it may not have been disclosed by researchers or vendors.