Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2005-0065

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Microsoft Windows的TCP/IP协议栈的ICMP协议处理模块存在漏洞,远程攻击者可能利用此漏洞重置服务器的TCP连接。

AI Predicted 5.3 Difficulty: Moderate EPSS 1.94% · P78
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2005-0065

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
The original design of TCP does not check that the TCP sequence number in an ICMP error message is within the range of sequence numbers for data that has been sent but not acknowledged (aka "TCP sequence number checking"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1) blind connection-reset attacks with forged "Destination Unreachable" messages, (2) blind throughput-reduction attacks with forged "Source Quench" messages, or (3) blind throughput-reduction attacks with forged ICMP messages that cause the Path MTU to be reduced. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Microsoft Windows TCP/IP协议栈ICMP重置TCP连接漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows的TCP/IP协议栈的ICMP协议处理模块存在漏洞,远程攻击者可能利用此漏洞重置服务器的TCP连接。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2005-0065

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-0065

登录查看更多情报信息。

Vendor Advisories for CVE-2005-0065 (1)

Other References for CVE-2005-0065 (1)

Same Patch Batch · n/a · 2005-01-19 · 77 CVEs total

CVE-2004-1376 Microsoft Internet Explorer安全漏洞
CVE-2005-0111 MySQL MaxDB websql CGI 堆栈溢出漏洞
CVE-2005-0043 Apple iTunes m3u/pls播放列表远程缓冲区溢出漏洞
CVE-2005-0012 Dillo 式化字符串漏洞
CVE-2005-0005 ImageMagick .psd图象文件解码堆溢出漏洞
CVE-2005-0002 POP Password Changer未授权密码更改漏洞
CVE-2005-0001 Linux Kernel i386 SMP页错误处理器特权提升漏洞
CVE-2004-1379 Xine-lib DVD子图象解码器堆溢出漏洞
CVE-2004-1378 Jabber Studio JabberD远程服务拒绝漏洞
CVE-2004-1377 GNU A2PS fixps.in脚本不安全临时文件漏洞
CVE-2005-0064 Unix/Linux厂商Xpdf makeFileKey2堆栈溢出漏洞
CVE-2004-1375 HP-UX SAM本地特权提升漏洞
CVE-2004-1374 NetBSD内核多个缓冲区溢出漏洞
CVE-2004-1373 Nullsoft SHOUTcast文件请求远程格式串处理漏洞
CVE-2004-1372 IBM DB2 rec2xml远程缓冲区溢出漏洞
CVE-2004-1371 Oracle wraped过程远程缓冲区溢出漏洞
CVE-2004-1370 Oracle多个PL/SQL注入漏洞
CVE-2004-1369 Oracle extproc目录遍历漏洞
CVE-2004-1368 Oracle extproc目录遍历漏洞
CVE-2004-1367 Oracle明文密码漏洞

Showing top 20 of 77 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-0065

No comments yet


Leave a comment