CNCVE编号:CNCVE-20020011 CVE编号: 安全级别:高 漏洞中文描述: HP ProCurve Switch是HP公司生产的交换机产品。ProCurve Switch TCP/IP堆栈实现上存在问题,远程攻击者可能对设备实施拒绝服务攻击。用nmap对HP ProCurve 4001M Ethernet switch进行端口扫描,引起交换机管理IP无法提供telnet服务。但是可以通过ICMP、SNMP继续对交换机进行管理,并且不影响已经建立的telnet连接。 漏洞英文描述: A problem with the switch could make it possible to deny telnet service to legitimate users of the device. The problem is in the handling of port scans by the device. A ProCurve switch could be led to deny telnet users service of the switch. When the switch is portscanned by a tool such as nmap, which is capable of producing a high amount of TCP connect() requests in a short period of time, the switch will no longer accept new telnet connections. Reportedly, this issue does not affect ICMP or SNMP management of the device, nor are existing telnet sessions disconnected. Rebooting the switch may be required in order to regain normal functionality. HP ProCurve 4000M with firmware version C.09.09 or C.08.22 are reported to be susceptible to this issue. 漏洞参考: http://archives.neohapsis.com/archives/bugtraq/2002-02/0366.html http://www.hp.com/rnd/ 系统类型: 其他 漏洞类型:设计错误