PT-2008-5159 · Cisco · Ubr10012+3

Publicado

2008-09-26

·

Atualizado

2022-06-02

·

CVE-2008-3805

CVSS v2.0

8.5

Alta

VetorAV:N/AC:L/Au:N/C:N/I:P/A:C
Name of the Vulnerable Software and Affected Versions Cisco IOS versions 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices
Description The issue allows remote attackers to cause a denial of service, resulting in a device or linecard reload, by sending crafted UDP packets to 127.0.0.0/8 addresses intended for IPC communication within the device.
Recommendations For Cisco IOS versions 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices, consider restricting access to external UDP packets to minimize the risk of exploitation. As a temporary workaround, restrict the handling of external UDP packets sent to 127.0.0.0/8 addresses until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2008-3805

Produtos afetados

Cisco 10000
Cisco Ios
Ubr10012
Ubr7200