U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2017-15076

Change History

CVE Modified by MITRE 10/10/2017 9:32:53 PM

Action Type Old Value New Value
Changed Description
** DISPUTED ** The Intel Puma 5, 6, and 7 chips, as used on Telstra branded NETGEAR C6300BD devices, allow remote attackers to cause a denial of service (performance degradation) by sending a moderate volume of small packets to many TCP or UDP ports. NOTE: Intel has advised that they are only a hardware manufacturer in this instance; they do NOT own the mitigation distribution channel for these chips. Any details about mitigations would need to come from Telstra. NOTE: NETGEAR states "This vulnerability does not affect the following products: C6300BD-Telstra."
** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: none.  Reason: This candidate was withdrawn by its CNA.  Further investigation showed that it was not a security issue associated with the originally named downstream provider.  Notes: none.
Changed Display Vulnerability
true
false
Removed Reference
http://badmodems.com/Forum/app.php/badmodems [No Types Assigned]

								
						
Removed Reference
http://www.badmodems.com/Issue3.htm [No Types Assigned]

								
						
Removed Reference
http://www.badmodems.com/list.htm [No Types Assigned]

								
						
Removed Reference
https://github.com/nallar/Puma6Fail [No Types Assigned]

								
						
Removed Reference
https://kb.netgear.com/000038560/Security-Advisory-for-Vulnerability-on-Select-Cable-Modems-and-Gateways-PSV-2017-2165 [No Types Assigned]

								
						
Removed Reference
https://www.dslreports.com/forum/r31134484- [No Types Assigned]

								
						
Removed Reference
https://www.dslreports.com/shownews/The-Arris-SB6190-Modem-Puma-6-Chipset-Have-Some-Major-Issues-138411 [No Types Assigned]

								
						
Removed Reference
https://www.theregister.co.uk/2016/12/03/intel_puma_chipset_firmware_fix/ [No Types Assigned]

								
						
Removed Reference
https://www.theregister.co.uk/2017/04/27/intel_puma6_chipset_trivial_to_dos/ [No Types Assigned]

								
						
Removed Reference
https://www.theregister.co.uk/2017/05/01/netgear_puma_6_modems_trivial_to_crash/ [No Types Assigned]

								
						
Removed Reference
https://www.theregister.co.uk/2017/08/09/intel_puma_modem_woes/ [No Types Assigned]