Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

DISCARD:INFO:ASCEND-DISCARD

Severity

Warning

Recommended

No

Category

DISCARD

Keywords

Ascent/Lucent Router Information Disclosure

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

DISCARD: Ascent/Lucent Router Information Disclosure


This signature detects attempts to exploit vulnerabilities in Lucent and Ascend routers. Attackers can send a maliciously crafted packet to the DISCARD port of the router to obtain confidential information. This information can be used to further compromise the system.

Extended Description

Several Lucent Router product lines include support for a configuration tool which communicates over UDP on port 9. If a specially crafted packet is sent to some of these devices on UDP port 9, a response is issued which contains sensitive information. This information may be of aid in further attacks against the network or device.

Affected Products

  • Ascend max 5.0.0 .0Ap42
  • Ascend pipeline 5.0.0 .0A
  • Lucent ascend_max_router 1.0.0
  • Lucent ascend_max_router 2.0.0
  • Lucent ascend_max_router 3.0.0
  • Lucent ascend_max_router 4.0.0
  • Lucent ascend_max_router 5.0.0
  • Lucent ascend_max_router 5.0.0 ap48
  • Lucent ascend_pipeline_router 1.0.0
  • Lucent ascend_pipeline_router 2.0.0
  • Lucent ascend_pipeline_router 3.0.0
  • Lucent ascend_pipeline_router 4.0.0
  • Lucent ascend_pipeline_router 5.0.0
  • Lucent ascend_pipeline_router 6.0.0
  • Lucent ascend_pipeline_router 6.0.2
  • Lucent dslterminator

References

  • BugTraq: 5335
  • URL: http://www.juniper.net/security/auto/vulnerabilities/vuln2094.html
  • URL: http://www.lucent.com/

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out