Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-5693 PoC — Intel Puma 5、6和7系列安全漏洞

Source
Associated Vulnerability
Title:Intel Puma 5、6和7系列安全漏洞 (CVE-2017-5693)
Description:Firmware in the Intel Puma 5, 6, and 7 Series might experience resource depletion or timeout, which allows a network attacker to create a denial of service via crafted network traffic.
Description
CVE-2017-5693 Denial of service vulnerability in Puma 6 modems
Readme
# Puma 6 fail demo

Tool to demonstrate issue from this post found by mackey: https://www.dslreports.com/forum/r31377755-

Proof of concept code is [already public](https://www.theregister.co.uk/2017/04/27/intel_puma6_chipset_trivial_to_dos/) elsewhere.

See [CVE-2017-5693](https://nvd.nist.gov/vuln/detail/CVE-2017-5693).

DoS occurs in either direction - UDP from LAN to WAN or WAN to LAN.

Testing through a local Virgin Media Super Hub 3 modem:

    1mbps/2000pps   causes ~20ms average latency rise with 200 maximum
    2mbps/4000pps   causes ~200ms average latency and 65% packet loss
    3mbps/6000pps   causes ~250ms average latency and 85% packet loss

![Smokeping graph while testing](https://i.imgur.com/eshENJE.png)
File Snapshot

[4.0K] /data/pocs/5c8611797edde11d5e7bc498a71b412f80e4d92d ├── [ 154] Cargo.lock ├── [ 106] Cargo.toml ├── [1.0K] LICENSE ├── [ 729] README.md ├── [ 128] renovate.json └── [4.0K] src └── [3.3K] main.rs 1 directory, 6 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. Local POC snapshots are reserved for subscribers — if the original source is unavailable, the local mirror is part of the paid plan.
    3. Mirroring, verifying, and maintaining this POC archive takes ongoing effort, so local snapshots are a paid feature. Your subscription keeps the archive online — thank you for the support. View subscription plans →