Secunia Logo  


Secunia PSI WorldMap
 
Nortel Networks Products ICMP Handling Vulnerabilities
Secunia Advisory: SA15761
Release Date: 2005-07-14
Popularity: 7,664 views

Critical:
Less critical
Impact: DoS
Where: From remote
Solution Status: Vendor Workaround

OS:Nortel Access Stack Node (ASN) Router
Nortel Advanced Remote Node (ARN) Router (formerly Passport)
Nortel Application Switches (formerly Alteon)
Nortel Backbone Concentrator Node (BCN) Router
Nortel Backbone Link Node (BLN) Router
Nortel Ethernet Routing Switch 5510 (formerly BayStack)
Nortel Ethernet Routing Switch 5520 (formerly BayStack)
Nortel Ethernet Routing Switch 8600 (formerly Passport)
Nortel Ethernet Switch 420-24T (formerly BayStack)
Nortel Ethernet Switch 425 (formerly BayStack)
Nortel Ethernet Switch 470 (formerly BayStack)
Nortel Multiprotocol Router 2430 (formerly Passport)
Nortel Multiprotocol Router 5430 (formerly Passport)
Nortel Multiservice Access Switch 4400 Series (formerly Passport)
Nortel Multiservice Switch 15000 (formerly Passport)
Nortel Multiservice Switch 20000 (formerly Passport)
Nortel Multiservice Switch 6400 (formerly Passport)
Nortel Multiservice Switch 7400 (formerly Passport)
Nortel Passport 1150 Routing Switch
Nortel Services Edge Router 5500 (formerly Shasta)
Nortel VPN Routers

Secunia CVSS-2 Score: Available in Secunia business solutions

Subscribe: Instant alerts on relevant vulnerabilities


Advisory Content (Page 1 of 3)[ 1 ] [ 2 ] [ 3 ]

Description:
Nortel Networks has acknowledged some vulnerabilities in various products, which can be exploited by malicious people to cause various types of DoS (Denial of Service).

For more information:
SA14904

The following products are only partly affected:
* Application Switch is only affected on the management port.
* Ethernet Switch (BPS2000/460/470), Ethernet Switch (420/425/325), Ethernet Switch 380-24T, and Ethernet Routing Switch 5510/5520 are only affected by the ICMP Source Quench attack.
* Multiservice Switch (6000 Series, 7000 Series, 15000, and 20000) is at limited risk due to MD5 authentication in PCR 6.1 and improvements made to sequence number selection.
* Multiservice Access Switch 4400 is only affected by ICMP source quench attacks, but does not typically have high speed interfaces.
* Multiprotocol Router Family is not affected by the ICMP Source Quench attack.

Change Page:
[ 1 ] [ 2 ] [ 3 ]



Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Microsoft DirectShow Streaming Video ActiveX Control Buffer Overflow // 44 views
2. MySQL "dispatch_command()" Denial of Service Vulnerability // 39 views
3. Internet Explorer Charset Inheritance Cross-Site Scripting Vulnerability // 37 views
4. Apple Safari Two WebKit Component Vulnerabilities // 33 views
5. Adobe Flash Player Multiple Vulnerabilities // 25 views
6. Zeroboard Two Vulnerabilities // 25 views
7. IBM AIX "syscall" Buffer Overflow Vulnerability // 24 views
8. Zeroboard Multiple Vulnerabilities // 24 views
9. Adobe ColdFusion FCKeditor "CurrentFolder" Vulnerability // 20 views
10. eBay Enhanced Picture Services ActiveX Control Vulnerability // 19 views