You are here: silicon.com > Management > IT Director

IT Director

"Serious" DoS flaw found in Nortel VPNs

Not so private now...

Tags: nta, nortel

By Dan Ilett

Published: 31 May 2005 17:05 BST

A security research company is warning Nortel Networks customers to upgrade their virtual private network (VPN) routers after it found a serious vulnerability in them.

The denial of service vulnerability enables hackers to crash IPSec VPN machines using a specially designed UDP packet. NTA Monitor said it would withhold details of the vulnerability because it is so dangerous.

Roy Hills, technical director of NTA Monitor said: "We believe this is a serious vulnerability. It's possible to identify Nortel VPN routers using UDP backoff fingerprinting and an attacker only needs to send a single, small UDP packet to identify the remote systems. We have determined that it's possible for an attacker with modest resources to scan the entire routed internet address space within a few weeks and thus find all of the Nortel VPN router systems."

Hills said the attack was serious because it is possible to find Nortel devices on the internet using simple hacker "fingerprinting" techniques. The attack also requires only a small piece of code to bring down thousands of machines at the same time: "This packet is less than 300 bytes in size, so an attacker with a 64Kb line could keep more than 7,000 Nortel VPN systems offline continuously, and someone with a 2Mb line has the potential to keep almost a quarter of a million systems offline."

NTA is urging companies to install a software patch that was issued by Nortel on Friday.

Nortel was not available for comment.

In March, NTA found a password flaw in Nortel's Contivity VPN client for Microsoft Windows.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

  • Jobs
Voice Engineer - Nortel Meridian Succession, Investment Bank, London

The role will be predominantly focused around the Nortel Succession platform with exposure to various other Voice Products. As a Nortel expert you ...

Nortel Passport 8600 / Cisco CCNP Network Engineer : London

Leading London based consultancy firm now seek a Nortel Network Specialist to work on its data network engineering team. To apply you will have key ...

Senior SAP FI/CO Consultant - North West - 50,000

The FICO consultant must be able to develop and manage scope, assign and schedule resources, and to monitor deliverable progress. The FICO consultant ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: