CVE-2005-0065

The original design of TCP does not check that the TCP sequence number in an ICMP error message is within the range of sequence numbers for data that has been sent but not acknowledged (aka "TCP sequence number checking"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1) blind connection-reset attacks with forged "Destination Unreachable" messages, (2) blind throughput-reduction attacks with forged "Source Quench" messages, or (3) blind throughput-reduction attacks with forged ICMP messages that cause the Path MTU to be reduced. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.

Published: 2005-05-02 Last update: 2026-04-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2005-0065 is rated High Risk (67.7/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 1.94%). Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2005-0065

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 1.32% 1.94% +0.62%
2 2025-12-14 1.06% 1.32% +0.25%
3 2025-07-28 1.06%

Full EPSS history (8 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2005-0065

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
10.0 2.0 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:C)
Complete confidentiality impact.
Integrity impact (I:C)
Complete integrity impact.
Availability impact (A:C)
Complete availability impact.
10.0 10.0 [email protected]

Weakness enumeration for CVE-2005-0065

OS Trackers for CVE-2005-0065

vendor priority summary link
suse high CVE-2005-0065 severity important: SUSE including 9 source package names (kernel-default, kernel-default-base, …), 120 product×package rows across 26 product lines (SUSE Linux Enterprise High Performance Computing 12 SP4, SUSE Linux Enterprise High Performance Computing 12 SP5, … (26 product lines)): Known Not Affected 120. https://www.suse.com/security/cve/CVE-2005-0065/

Affected software / configurations for CVE-2005-0065

Vendor Product Version Raw CPE
tcp tcp cpe:2.3:a:tcp:tcp:*:*:*:*:*:*:*:*

References for CVE-2005-0065

cvelogic Threat Intelligence