PT-2002-1405 · Cisco · Cisco Ios+1
Published
2002-06-25
·
Updated
2008-09-05
·
CVE-2002-0339
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco IOS versions 11.1CC through 12.2
Description
The issue concerns Cisco IOS when Cisco Express Forwarding (CEF) is enabled. It involves the inclusion of portions of previous packets in the padding of a MAC level packet. This occurs when the MAC packet's length is less than the IP level packet length.
Recommendations
For Cisco IOS versions 11.1CC through 12.2, consider disabling Cisco Express Forwarding (CEF) as a temporary workaround to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Express Forwarding
Cisco Ios