Overview
Zyxel P660 series modem/router contains a denial of service vulnerability when parsing a high volume of SYN packets on the web management interface.
Description
It has been reported that Zyxel P660 series modem/router (and possibly other models which share the same core firmware) fail to parse a high volume of SYN packets on the web management interface correctly causing the device to reboot. By default, the device runs a web management interface on port tcp/80 which is accessible remotely (LAN and WAN sides). |
Impact
An unauthenticated attacker can cause the device to reboot and become unavailable by sending a stream of SYN packets to the device's web management interface. |
Solution
We are currently unaware of a practical solution to this problem. |
Restrict Network Access |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | 7.1 | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Temporal | 5.4 | E:U/RL:U/RC:UC |
Environmental | 4.1 | CDP:ND/TD:M/CR:ND/IR:ND/AR:ND |
References
Acknowledgements
Thanks to Alex French for reporting this vulnerability.
This document was written by Michael Orlando.
Other Information
CVE IDs: | CVE-2013-3588 |
Date Public: | 2013-08-06 |
Date First Published: | 2014-04-01 |
Date Last Updated: | 2014-04-01 14:43 UTC |
Document Revision: | 11 |