CVE-2005-0356 - CVE House
Back to Database
Status published Medium CVE-2005-0356

Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS)...

Vulnerability Description

Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connection loss) via a spoofed packet with a large timer value, which causes the host to discard later packets because they appear to be too old.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-0356

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

agent desktop, e-mail manager, emergency responder, intelligent contact manager, interactive voice response, ip contact center enterprise, ip contact center express, meetingplace, personal assistant, remote monitoring suite option, secure access control server, support tools, web collaboration option, alaxala, call manager, unity server, mgx 8230, mgx 8250, ciscoworks access control list manager, ciscoworks common management foundation, ciscoworks common services, ciscoworks lms, ciscoworks vpn security management solution, ciscoworks windows, webns, business communications manager, callpilot, contact center, content services switch 11000, content services switch 11050, content services switch 11150, content services switch 11500, content services switch 11501, content services switch 11503, content services switch 11506, content services switch 11800, 7220 wlan access point, 7250 wlan access point, ethernet routing switch 1612, ethernet routing switch 1624, ethernet routing switch 1648, optical metro 5000, optical metro 5100, optical metro 5200, succession communication server 1000, survivable remote gateway, universal signaling point, ciscoworks 1105 hosting solution engine, ciscoworks 1105 wireless lan solution engine, ciscoworks cd1, ciscoworks windows wug, conference connection, freebsd, windows 2000, windows 2003 server, windows xp, openbsd, alaxala networks, aironet ap1200, aironet ap350, sn 5420 storage router, gr3000, gr4000, gs4000, rt105, rt250i, rt300i, rt57i, rtv700, rtx1000, rtx1100, rtx1500, rtx2000, sn 5420 storage router firmware, sn 5428 storage router, tmos
Vulnerable Versions:
1.1, 5.0, 1.3\(1\), 1.3\(2\), 1.3\(3\), 1.3\(4\), 1.4\(1\), 1.4\(2\), 2.0, 2.1, 2.3, 2.3.5.1, 2.3.6.1, 2.4, 2.5, 2.6, 2.6.2, 2.6.3, 2.6.4, 2.42, 3.0, 3.0.1, 3.0.3, 3.1, 3.1.1, 3.2, 3.2\(1\), 3.2\(1.20\), 3.2\(2\), 3.2\(3\), 3.2.1, 3.2.2, 3.3, 3.3\(1\), 3.3.1, 3.3.2, ax, 1.0, 3.1\(2\), 3.1\(3a\), 3.3\(3\), 4.0, 2.2, 2.46, 1.2.10, 1.2.11, 1.5, 1.6, 1.3, 7.10_\(05.07\)s, 7.20_\(03.09\)s, 7.20_\(03.10\)s, 7.30_\(00.08\)s, 7.30_\(00.09\)s, 200, 400, 1000, 200i, 201i, 702t, 703t, 5200, compact_lite, 1st, 2nd, 3rd, 4th, 5th, 1.1\(1\), 1.2, 1.1.5.1, 2.0.5, 2.1.0, 2.1.5, 2.1.6, 2.1.6.1, 2.1.7.1, 2.2.2, 2.2.3, 2.2.4, 2.2.5, 2.2.6, 2.2.8, 3.4, 3.5, 3.5.1, 4.1, 4.1.1, 4.2, 4.3, 4.4, 4.5, 4.6, 4.6.2, 4.7, 4.8, 4.9, 4.10, 4.11, 5.1, 5.2, 5.2.1, 5.3, 5.4, enterprise, enterprise_64-bit, r2, standard, standard_64-bit, web, 3.6, ax5400s, ax7800r, ax7800s, 1.1\(2\), 1.1\(3\), 1.1\(4\), 1.1\(5\), 1.1\(7\), 1.1.3, 2-3.3.1-k9, 2-3.3.2-k9, 2.5.1-k9, 3.2.1-k9, 3.2.2-k9, 3.3.1-k9, 3.3.2-k9, 4.5.6, 4.5.9, 4.5.10, 4.5.11, 4.5.12, 9.0, 9.0.1, 9.0.2, 9.0.3, 9.0.4, 9.0.5

Timeline

Official Publish: May 31st, 2005
Last Modified: August 7th, 2024
Added to House: July 18th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.