This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Denial of Service Vulneribility on my XG17 device after a scan

My IDS is up to max.

 

Denial of Service: stream.c
Description
general/tcp

Description:

It seems it was possible to make the remote server crash using the 'stream.c' 
attack. 

An attacker may use this flaw to shut down this server, thus preventing 
your network from working properly.

Solution : contact your operating system vendor for a patch.
Workaround : if you use IP filter,
then add these rules :

block in quick proto tcp from any to any head 100
pass in quick proto tcp from any to any flags S keep state group 100
pass in all

Reference : online.securityfocus.com/.../42729
Reference : online.securityfocus.com/.../42723

Risk factor : Medium

CVSS Score:
2.1
 
 
 
 
 
 Denial of Service: Ascend Kill
Description
9/udp

Description:
It was possible to make
the remote Ascend router reboot by sending
it a UDP packet containing special data on
port 9 (discard).

An attacker may use this flaw to make your
router crash continuously, preventing
your network from working properly.

Solution : filter the incoming UDP traffic coming
to port 9. Contact Ascend for a solution.

Risk factor : Medium

CVSS Score:
5.0


This thread was automatically locked due to age.
Parents Reply
  • Hi Rick,

    let us hope that one of the mods with ore experience in the IPS field reads your answer/question and can provide a more detailed answer?

    Ian

    As a mater of interest having all the IPS signatures does not improve your security. They are designed for various systems and if you are not running mail server, linux server etc having those signatures does nothing for your network security.

Children
No Data