16th Sep 2002   [SBWID-5692]
	
COMMAND
	
		Enterasys Smart Switch Router scan crashes the system
	
	
SYSTEMS AFFECTED
	
		Enterasys SSR8000 with firmware E8.2.0.0, and E8.3.0.4
	
	
PROBLEM
	
		Mella Marco [m.mella@saritel.it] says :
		
		
		Sending few packets on tcp ports 15077 and 15078 ...
		
		 Test 1
		 ======
		 
		From Linux-pc (IP 10.2.1.2) to SSR
		
		" nmap -PT 10.2.1.1 -p '15077-15078' "
		
		single scan Result : No Crash
		
		 Test 2
		 ======
		
		If we do two test
		
		nmap -PT 10.2.1.1 -p '15077-15078' 
		
		in same time or in few time Result : CPU at 1%, System go down
	
	
SOLUTION
	
		 Workaround
		 ==========
		
		ACL for denies any access to ports 15077 15078 from any interfaces
		
		 Patch
		 =====
		
	
TUCoPS is optimized to look best in Firefox® on a widescreen monitor (1440x900 or better).
Site design & layout copyright © 1986-2025 AOH