Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
BID:10560
Info
Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
| Bugtraq ID: | 10560 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2004-0589 CVE-2004-0589 CVE-2004-0589 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 16 2004 12:00AM |
| Updated: | Jul 06 2016 01:19PM |
| Credit: | Discovery is credited to Cisco and researchers at the University of California at Santa Barbara. |
| Vulnerable: |
Cisco IOS 12.3T Cisco IOS 12.3 Cisco IOS 12.2ZP Cisco IOS 12.2ZO Cisco IOS 12.2ZN Cisco IOS 12.2ZL Cisco IOS 12.2ZK Cisco IOS 12.2ZI Cisco IOS 12.2ZH Cisco IOS 12.2ZH Cisco IOS 12.2ZG Cisco IOS 12.2ZF Cisco IOS 12.2ZF Cisco IOS 12.2ZE Cisco IOS 12.2ZC Cisco IOS 12.2ZB Cisco IOS 12.2ZB Cisco IOS 12.2ZA Cisco IOS 12.2ZA Cisco IOS 12.2YZ Cisco IOS 12.2YZ Cisco IOS 12.2YY Cisco IOS 12.2YX Cisco IOS 12.2YX Cisco IOS 12.2YW Cisco IOS 12.2YV Cisco IOS 12.2YV Cisco IOS 12.2YU Cisco IOS 12.2YT Cisco IOS 12.2YT Cisco IOS 12.2YS Cisco IOS 12.2YR Cisco IOS 12.2YR Cisco IOS 12.2YQ Cisco IOS 12.2YP Cisco IOS 12.2YP Cisco IOS 12.2YO Cisco IOS 12.2YN Cisco IOS 12.2YN Cisco IOS 12.2YM Cisco IOS 12.2YL Cisco IOS 12.2YL Cisco IOS 12.2YJ Cisco IOS 12.2YH Cisco IOS 12.2YG Cisco IOS 12.2YF Cisco IOS 12.2YE Cisco IOS 12.2YD Cisco IOS 12.2YC Cisco IOS 12.2YB Cisco IOS 12.2YA Cisco IOS 12.2XW Cisco IOS 12.2XU Cisco IOS 12.2XT Cisco IOS 12.2XS Cisco IOS 12.2XQ Cisco IOS 12.2XQ Cisco IOS 12.2XN Cisco IOS 12.2XM Cisco IOS 12.2XL Cisco IOS 12.2XK Cisco IOS 12.2XK Cisco IOS 12.2XJ Cisco IOS 12.2XI Cisco IOS 12.2XH Cisco IOS 12.2XG Cisco IOS 12.2XE Cisco IOS 12.2XD Cisco IOS 12.2XB Cisco IOS 12.2XA Cisco IOS 12.2T Cisco IOS 12.2SZ Cisco IOS 12.2SZ Cisco IOS 12.2SY Cisco IOS 12.2SXB Cisco IOS 12.2SXA Cisco IOS 12.2SX Cisco IOS 12.2SW Cisco IOS 12.2SV Cisco IOS 12.2SU Cisco IOS 12.2SE Cisco IOS 12.2S Cisco IOS 12.2JA Cisco IOS 12.2JA Cisco IOS 12.2EW Cisco IOS 12.2DX Cisco IOS 12.2DX Cisco IOS 12.2DD Cisco IOS 12.2DA Cisco IOS 12.2CX Cisco IOS 12.2CX Cisco IOS 12.2BZ Cisco IOS 12.2BY Cisco IOS 12.2BX Cisco IOS 12.2BW Cisco IOS 12.2BC Cisco IOS 12.2B Cisco IOS 12.2 Cisco IOS 12.1YJ Cisco IOS 12.1YH Cisco IOS 12.1YD Cisco IOS 12.1YC Cisco IOS 12.1YB Cisco IOS 12.1YA Cisco IOS 12.1XY Cisco IOS 12.1XV Cisco IOS 12.1XU Cisco IOS 12.1XT Cisco IOS 12.1XR Cisco IOS 12.1XQ Cisco IOS 12.1XP Cisco IOS 12.1XM Cisco IOS 12.1XL Cisco IOS 12.1XJ Cisco IOS 12.1XI Cisco IOS 12.1XH Cisco IOS 12.1XG Cisco IOS 12.1XF Cisco IOS 12.1XE Cisco IOS 12.1XD Cisco IOS 12.1XC Cisco IOS 12.1XB Cisco IOS 12.1XA Cisco IOS 12.1T Cisco IOS 12.1T Cisco IOS 12.1EY Cisco IOS 12.1EX Cisco IOS 12.1EW Cisco IOS 12.1EV Cisco IOS 12.1EO Cisco IOS 12.1EC Cisco IOS 12.1EB Cisco IOS 12.1EA Cisco IOS 12.1E Cisco IOS 12.1DB Cisco IOS 12.1DA Cisco IOS 12.1AZ Cisco IOS 12.1AA Cisco IOS 12.1 Cisco IOS 12.0XU Cisco IOS 12.0XS Cisco IOS 12.0XR Cisco IOS 12.0XN Cisco IOS 12.0XL Cisco IOS 12.0XK Cisco IOS 12.0XJ Cisco IOS 12.0XI Cisco IOS 12.0XH Cisco IOS 12.0XG Cisco IOS 12.0XE Cisco IOS 12.0XD Cisco IOS 12.0XC Cisco IOS 12.0XA Cisco IOS 12.0WX Cisco IOS 12.0W5 Cisco IOS 12.0T Cisco IOS 12.0T Cisco IOS 12.0SZ Cisco IOS 12.0SZ Cisco IOS 12.0SX Cisco IOS 12.0SV Cisco IOS 12.0ST Cisco IOS 12.0SL Cisco IOS 12.0S Cisco IOS 12.0DA Cisco IOS 12.0 Cisco IOS 11.3T Cisco IOS 11.3 Cisco IOS 11.2SA Cisco IOS 11.2P Cisco IOS 11.2 Cisco IOS 11.1CA Cisco IOS 11.1AA Cisco IOS 11.1 |
| Not Vulnerable: |
Cisco IOS 12.3T Cisco IOS 12.3 Cisco IOS 12.1YJ Cisco IOS 12.1AX Cisco IOS 12.0XU Cisco IOS 12.0XP Cisco IOS 12.0WC Cisco IOS 11.2SA Cisco IOS 11.2(16) |
Discussion
Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
The problem presents itself when an affected device handles a malformed or invalid Border Gateway Protocol (BGP) packet. During processing the offending packet the affected device will reset.
It should be noted that this issue only affects devices with BGP enabled; BGP is not enabled by default. It has been reported that this issue would be very difficult to exploit as it would require injecting malicious packets into communication between trusted peers.
An attacker may exploit this issue to cause the affected device to reset, taking several minutes to become functional. It is possible to create a persistent denial of service condition by continually transmitting malformed packets to the affected device.
The problem presents itself when an affected device handles a malformed or invalid Border Gateway Protocol (BGP) packet. During processing the offending packet the affected device will reset.
It should be noted that this issue only affects devices with BGP enabled; BGP is not enabled by default. It has been reported that this issue would be very difficult to exploit as it would require injecting malicious packets into communication between trusted peers.
An attacker may exploit this issue to cause the affected device to reset, taking several minutes to become functional. It is possible to create a persistent denial of service condition by continually transmitting malformed packets to the affected device.
Exploit / POC
Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
Solution:
Cisco has provided a fix matrix in their Cisco IOS Malformed BGP Packet Causes Reload advisory. Please see the attached advisory for details on obtaining fixes from Cisco.
Solution:
Cisco has provided a fix matrix in their Cisco IOS Malformed BGP Packet Causes Reload advisory. Please see the attached advisory for details on obtaining fixes from Cisco.
References
Cisco IOS Border Gateway Protocol Denial Of Service Vulnerability
References:
References: