PT-2002-3027 · Cisco · Cisco Ios
Published
2002-12-31
·
Updated
2008-09-05
·
CVE-2002-2315
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions:
Cisco IOS versions 11.2.x through 12.0.x
Description:
The issue allows remote attackers to cause a denial of service due to memory consumption via spoofed ICMP redirect packets to the router. This occurs because the software does not limit the size of its redirect table.
Recommendations:
For versions 11.2.x through 12.0.x, consider implementing measures to limit the impact of ICMP redirect packets, such as restricting access to the router or configuring it to ignore spoofed ICMP redirects. As a temporary workaround, consider configuring the router to reduce the size of its redirect table until a more permanent solution is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Ios