CVE-2001-1244
MEDIUM 5.0EPSS 22.0%
Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 21.96% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2002-05-03
- Updated
- 2024-08-08