PT-2002-3027 · Cisco · Cisco Ios

Published

2002-12-31

·

Updated

2008-09-05

·

CVE-2002-2315

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Cisco IOS versions 11.2.x through 12.0.x
Description: The issue allows remote attackers to cause a denial of service due to memory consumption via spoofed ICMP redirect packets to the router. This occurs because the software does not limit the size of its redirect table.
Recommendations: For versions 11.2.x through 12.0.x, consider implementing measures to limit the impact of ICMP redirect packets, such as restricting access to the router or configuring it to ignore spoofed ICMP redirects. As a temporary workaround, consider configuring the router to reduce the size of its redirect table until a more permanent solution is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-2315

Affected Products

Cisco Ios