Dimension Denial-of-Service
Summary #
WatchGuard Dimension is susceptible to a denial-of-service condition when an attacker sends a high volume of TCP SYN packets to the log listening service.
Impact: An attacker with network access to the Dimension server's listening port can flood it with SYN packets, causing packet loss and reduced availability for legitimate clients attempting to reach the Dimension instance. The severity of impact is reduced when the instance is deployed behind a firewall or on a restricted network segment, as recommended by WatchGuard.
Product status #
| Product | Affected | Not affected |
|---|---|---|
| Dimension | >= 2.0, < 2.3.1 | >= 2.3.1 |
Weakness Type and Impact #
Exploitation Status #
Solution #
Workaround #
The vulnerability exploit requires a high volume of TCP SYN packets over a short duration and is mitigated by deploying the Dimension server behind a firewall that provides rate limiting protections.
References #
Credits #
- Alessandro Vannini, IT4YOU Cybersecurityfinder