TCP/IP IGMP Overlap Remote DoS (pimp)

This script is Copyright (C) 1999-2014 Tenable Network Security, Inc.


Synopsis :

The remote host is vulnerable to a denial of service attack.

Description :

It was possible to crash the remote host using the 'pimp' attack. This
flaw allows an attacker to make this host crash at will, thus
preventing the legitimate users from using it.

See also :

http://archives.neohapsis.com/archives/bugtraq/1999-q3/0030.html

Solution :

Filter incoming IGMP traffic.

Risk factor :

High / CVSS Base Score : 8.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:C)
CVSS Temporal Score : 7.2
(CVSS2#E:U/RL:U/RC:C)
Public Exploit Available : true

Family: Denial of Service

Nessus Plugin ID: 10179 ()

Bugtraq ID: 514

CVE ID: CVE-1999-0918

Ready to Scan Unlimited IPs & Run Compliance Checks?

Upgrade to Nessus Professional today!

Buy Now

Combine the Power of Nessus with the Ease of Cloud

Start your free Nessus Cloud trial now!

Begin Free Trial