PT-2015-1432 · Cisco · Cisco Ios Xr+1
Published
2015-06-12
·
Updated
2017-01-04
·
CVE-2015-0776
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Cisco IOS XR version 5.0.1
Description
The issue is related to resource management errors in the telnetd subcomponent of the Cisco IOS operating system. It can be exploited by a remote attacker using a specially crafted telnet packet, potentially leading to a denial of service, causing the device to reload.
Recommendations
For Cisco IOS XR version 5.0.1, consider restricting access to the telnetd service until a patch is available to prevent potential exploitation. As a temporary workaround, limiting the exposure of the device to untrusted networks may also help minimize the risk of a denial of service attack.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Ios
Cisco Ios Xr