CVE-2017-7397

BackBox Linux 4.6 allows remote attackers to cause a denial of service (ksoftirqd CPU consumption) via a flood of packets with Martian source IP addresses (as defined in RFC 1812 section 5.3.7). This product enables net.ipv4.conf.all.log_martians by default. NOTE: the vendor reports "It has been proved that this vulnerability has no foundation and it is totally fake and based on false assumptions.
Configurations

Configuration 1 (hide)

cpe:2.3:o:backbox:backbox_linux:4.6:*:*:*:*:*:*:*

History

21 Nov 2024, 03:31

Type Values Removed Values Added
References () http://www.exploitalert.com/view-details.html?id=26361 - Exploit, Third Party Advisory () http://www.exploitalert.com/view-details.html?id=26361 - Exploit, Third Party Advisory
References () https://backbox.org/portal/blog/false-cve-backbox-46-unmasked - Vendor Advisory () https://backbox.org/portal/blog/false-cve-backbox-46-unmasked - Vendor Advisory
References () https://cxsecurity.com/issue/WLB-2017040001 - Exploit, Third Party Advisory () https://cxsecurity.com/issue/WLB-2017040001 - Exploit, Third Party Advisory
References () https://forum.backbox.org/security-advisories/waiting-verification-backbox-os-denial-of-service/msg10218 - Vendor Advisory () https://forum.backbox.org/security-advisories/waiting-verification-backbox-os-denial-of-service/msg10218 - Vendor Advisory
References () https://www.exploit-db.com/exploits/41781/ - Exploit, Third Party Advisory, VDB Entry () https://www.exploit-db.com/exploits/41781/ - Exploit, Third Party Advisory, VDB Entry

07 Nov 2023, 02:50

Type Values Removed Values Added
Summary ** DISPUTED ** BackBox Linux 4.6 allows remote attackers to cause a denial of service (ksoftirqd CPU consumption) via a flood of packets with Martian source IP addresses (as defined in RFC 1812 section 5.3.7). This product enables net.ipv4.conf.all.log_martians by default. NOTE: the vendor reports "It has been proved that this vulnerability has no foundation and it is totally fake and based on false assumptions." BackBox Linux 4.6 allows remote attackers to cause a denial of service (ksoftirqd CPU consumption) via a flood of packets with Martian source IP addresses (as defined in RFC 1812 section 5.3.7). This product enables net.ipv4.conf.all.log_martians by default. NOTE: the vendor reports "It has been proved that this vulnerability has no foundation and it is totally fake and based on false assumptions.

Information

Published : 2017-04-03 20:59

Updated : 2024-11-21 03:31


NVD link : CVE-2017-7397

Mitre link : CVE-2017-7397

CVE.ORG link : CVE-2017-7397


JSON object : View

Products Affected

backbox

  • backbox_linux
CWE
CWE-400

Uncontrolled Resource Consumption