CVE-2002-2185

UnknownEPSS 2.49%

Last modified

CVE-2002-2185 is a vulnerability of currently unknown severity. The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.. EPSS estimates a 2.49% chance of exploitation in the next 30 days.

Description

The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.

Metrics

EPSS Probability
2.49%

82.6th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersionsUpdate
SgiIrix6.5
SgiIrix6.5.1
SgiIrix6.5.2
SgiIrix6.5.3
SgiIrix6.5.4
SgiIrix6.5.5
SgiIrix6.5.6
SgiIrix6.5.7
SgiIrix6.5.8
SgiIrix6.5.9
SgiIrix6.5.10
SgiIrix6.5.11
SgiIrix6.5.12
SgiIrix6.5.13
SgiIrix6.5.14f
SgiIrix6.5.14m
SgiIrix6.5.15f
SgiIrix6.5.15m
SgiIrix6.5.16f
SgiIrix6.5.16m
SgiIrix6.5.17f
SgiIrix6.5.17m
SgiIrix6.5.18f
SgiIrix6.5.18m
DebianDebian Linux2.2
MandrakesoftMandrake Linux8.0
MandrakesoftMandrake Linux8.1
MandrakesoftMandrake Linux8.2
MicrosoftWindows 98All versionsGold
MicrosoftWindows 98seAll versions
MicrosoftWindows XpAll versions
RedhatEnterprise Linux3.0
RedhatEnterprise Linux4.0
RedhatEnterprise Linux Desktop3.0
RedhatEnterprise Linux Desktop4.0
RedhatLinux6.2
RedhatLinux7.0
RedhatLinux7.1
RedhatLinux7.2
RedhatLinux7.3
RedhatLinux Advanced Workstation2.1
SuseSuse Linux6.4
SuseSuse Linux7.0
SuseSuse Linux7.1
SuseSuse Linux7.2
SuseSuse Linux7.3
SuseSuse Linux8.0

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2002-2185?
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
How severe is CVE-2002-2185?
Severity scoring for CVE-2002-2185 is pending analysis. The EPSS model estimates a 2.49% probability of exploitation in the next 30 days.
How do I fix CVE-2002-2185?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2002-2185?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST