First published: Wed Apr 25 2007(Updated: )
** DISPUTED ** 3Com TippingPoint IPS allows remote attackers to cause a denial of service (device hang) via a flood of packets on TCP port 80 with sequentially increasing source ports, related to a "badly written loop." NOTE: the vendor disputes this issue, stating that the product has "performed as expected with no DoS emerging."
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
3com Tippingpoint Ips | ||
3Com TippingPoint IPS | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2276 is considered a denial of service vulnerability that may cause device hang.
To mitigate CVE-2007-2276, consider applying any available patches from the vendor or implementing network-level rate limiting on TCP port 80.
CVE-2007-2276 affects 3Com TippingPoint IPS devices.
Yes, CVE-2007-2276 can be exploited remotely through a flood of packets sent to TCP port 80.
Yes, the vendor disputes the issue, claiming the product is functioning as intended.