Overview
A vulnerability in the Nokia Gateway GPRS support node (GGSN) may allow a remote attacker to cause a denial of service.
Description
| A vulnerability in the GGSN may allow a remote attacker to restart the device. For technical details, please see the @stake Security Advisory Nokia GGSN (IP650 Based) DoS Issues. Nokia describes the GGSN as follows: | 
Impact
| A remote attacker may be able to restart the GGSN, which will disrupt connectivity within the GPRS network that the GGSN is responsible for. | 
Solution
| Obtain an upgraded IPSO from Nokia. | 
| Workarounds 
 | 
Vendor Information
CVSS Metrics
| Group | Score | Vector | 
|---|---|---|
| Base | ||
| Temporal | ||
| Environmental | 
References
- http://www.nokia.com
- http://www.atstake.com/research/advisories/2003/a060903-1.txt
- http://www.secunia.com/advisories/9008/
- http://www.securityfocus.com/bid/7854
- http://securitytracker.com/alerts/2003/Jun/1006964.html
- http://www.iss.net/security_center/static/12221.php
- http://www.cellular-news.com/story/9051_print.shtml
Acknowledgements
This vulnerability was discovered by @stake, Inc.
This document was written by Ian A Finlay.
Other Information
| CVE IDs: | CVE-2003-0368 | 
| Severity Metric: | 5.63 | 
| Date Public: | 2003-06-09 | 
| Date First Published: | 2003-08-20 | 
| Date Last Updated: | 2003-08-20 14:24 UTC | 
| Document Revision: | 10 |