cve/2005/CVE-2005-3774.md

18 lines
959 B
Markdown
Raw Normal View History

2024-07-25 21:25:12 +00:00
### [CVE-2005-3774](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3774)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Cisco PIX 6.3 and 7.0 allows remote attackers to cause a denial of service (blocked new connections) via spoofed TCP packets that cause the PIX to create embryonic connections that that would not produce a valid connection with the end system, including (1) SYN packets with invalid checksums, which do not result in a RST; or, from an external interface, (2) one byte of "meaningless data," or (3) a TTL that is one less than needed to reach the internal destination.
### POC
#### Reference
- http://www.cisco.com/warp/public/707/cisco-response-20051122-pix.shtml
#### Github
No PoCs found on GitHub currently.