PT-2006-2095 · Linksys · Linksys Wrt54G

Hm2K

·

Publicado

2006-03-07

·

Atualizado

2018-10-18

·

CVE-2006-1067

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Linksys WRT54G routers version 5
Description The issue allows remote attackers to cause a denial of service by sending a malformed DCC SEND string to an IRC channel. This results in an IRC connection reset and may be related to the masquerading code for NAT environments. The denial of service can be triggered by sending a DCC SEND with a single long argument or a DCC SEND with IP, port, and filesize arguments with a 0 value.
Recommendations For Linksys WRT54G routers version 5, consider restricting access to IRC channels to minimize the risk of exploitation until a fix is available. As a temporary workaround, avoid using the DCC SEND feature in IRC connections.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-1067

Produtos afetados

Linksys Wrt54G