PT-2011-4369 · Cisco · Cisco Ios
Publicado
2011-09-28
·
Atualizado
2012-05-14
·
CVE-2011-3281
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco IOS versions 15.0 through 15.1
Description
The issue allows remote attackers to cause a denial of service, resulting in a device reload or hang, via a crafted HTTP packet. This is related to certain HTTP Layer 7 Application Control and Inspection configurations. Additionally, there are vulnerabilities related to Cisco IOS Intrusion Prevention System (IPS) and Cisco IOS Zone-Based Firewall features, including a memory leak and a denial of service when processing specially crafted HTTP packets.
Recommendations
For Cisco IOS versions 15.0 through 15.1, update to a version that addresses these vulnerabilities, as software updates have been released by Cisco.
At the moment, there is no information about a workaround that mitigates these vulnerabilities.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Cisco Ios