NetScreen H.323控制会话存在拒绝服务问题发布时间:2002-11-25 更新时间:2002-11-25 严重程度:中 威胁程度:远程拒绝服务 错误类型:设计错误 利用方式:服务器模式 BUGTRAQ ID:6250 受影响系统 NetScreen ScreenOS 3.1.1r2详细描述 所有Netscreen应用相关在处理H.323控制会话时存在拒绝服务漏洞。这个漏洞是由于不充分删除已经存在的会话,过多半打开H.323控制会话可保存36小时之久,造成消耗防火墙过多的会话表条目。 这个漏洞根据报告只影响允许转发H.323通信或者NETMEETING通信Netsceern应用配置。 测试代码 尚无 解决方案 升级到Netscreen OS 4.0版本: NetScreen ScreenOS 3.1.1r2: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.1.0r9: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.1.0r2: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.1.0r1: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.1.0: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.0r4: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.0r3: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.0r2: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.0r1: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.0: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 2.8.0r1: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 2.8: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.1 r2: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.1 r1: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 3.0.3 r1.1: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp NetScreen ScreenOS 4.0: NetScreen Upgrade ScreenOS 4.0.1 http://www.netscreen.com/support/updates.asp 相关信息 参考:http://www.netscreen.com/support/alerts/Potential_H_323_Denial_of_Service.html 相关主页:http://www.netscreen.com/index.html |