CVE-2001-0328 EXPLOIT
5.0
MEDIUM · CVSS 2.0 · EPSS 18.1% (pctl 97)
Patch early
A public exploit exists.
Description
TCP implementations that use random increments for initial sequence numbers (ISN) can allow remote attackers to perform session hijacking or disruption by injecting a flood of packets with a range of ISN values, one of which may match the expected ISN.
Scoring
| CVSS | 5.0 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
| EPSS | 18.13% — more likely to be exploited than 97% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-06-27 |
| Last modified | 2026-06-16 |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Linux Kernel 2.2 - Predictable TCP Initial Sequence Number | 1999-09-27 |
References
- ftp://patches.sgi.com/support/free/security/advisories/20030201-01-P
- http://secunia.com/advisories/8044
- http://securityreason.com/securityalert/57
- http://www.cert.org/advisories/CA-2001-09.html
- http://www.securityfocus.com/bid/2682
- http://www.securitytracker.com/id/1033181
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4922
- https://support.f5.com/csp/article/K19063943?utm_source=f5support&%3Butm_medium=RSS
- ftp://patches.sgi.com/support/free/security/advisories/20030201-01-P
- http://secunia.com/advisories/8044
- http://securityreason.com/securityalert/57
- http://www.cert.org/advisories/CA-2001-09.html
- http://www.securityfocus.com/bid/2682
- http://www.securitytracker.com/id/1033181
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4922
- https://support.f5.com/csp/article/K19063943?utm_source=f5support&%3Butm_medium=RSS
→ the Explorer · watch your stack · NVD