PT-2001-2031 · Cisco · Cisco 12000+1

Publicado

2001-12-06

·

Atualizado

2017-10-10

·

CVE-2001-0865

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Cisco 12000 with IOS version 12.0
Description The issue concerns the Cisco 12000 device with IOS 12.0, specifically line cards based on Engine 2, which does not support the "fragment" keyword in an outgoing Access Control List (ACL). This lack of support could allow fragmented packets to bypass the intended access restrictions.
Recommendations For Cisco 12000 with IOS version 12.0, consider configuring ACLs to explicitly handle fragmented packets or seek alternative methods to enforce access control, as the device does not support the "fragment" keyword in outgoing ACLs.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-0865

Produtos afetados

Cisco 12000
Ios