CVE-2002-0957

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/10/2002
Last modified:
05/09/2008

Description

The default configuration of BlackICE Agent 3.1.eal and 3.1.ebh has a high tcp.maxconnections setting, which could allow remote attackers to cause a denial of service (memory consumption) via a large number of connections to the BlackICE system that consumes more resources than intended by the user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:iss:blackice_agent:3.1eal:*:*:*:*:*:*:*
cpe:2.3:a:iss:blackice_agent:3.1ebh:*:*:*:*:*:*:*