Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
BID:11649
Info
Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
| Bugtraq ID: | 11649 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 10 2004 12:00AM |
| Updated: | Nov 10 2004 12:00AM |
| Credit: | This vulnerability was reported to Cisco by a customer. |
| Vulnerable: |
Cisco IOS 12.2(20)EW Cisco IOS 12.2(18)SW Cisco IOS 12.2(18)SV Cisco IOS 12.2(18)SE Cisco IOS 12.2(18)S Cisco IOS 12.2(18)EWA Cisco IOS 12.2(18)EW Cisco IOS 12.2(14)SZ Cisco Catalyst 7600 Sup720/MSFC3 Cisco 7600 Cisco 7500 Cisco 7300 Cisco 7200 Cisco 2651XM Multiservice Platform Cisco 2651 Multiservice Platform Cisco 2650XM Multiservice Platform Cisco 2650 Multiservice Platform |
| Not Vulnerable: |
Cisco IOS 12.2(25)SW Cisco IOS 12.2(25)S Cisco IOS 12.2(24)SV Cisco IOS 12.2(22)S2 Cisco IOS 12.2(20)SE3 Cisco IOS 12.2(20)S4 Cisco IOS 12.2(20)EWA Cisco IOS 12.2(18)S6 Cisco IOS 12.2(18)EW2 |
Discussion
Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
Cisco IOS is reported susceptible to a remote denial of service vulnerability when handling specific DHCP packets.
Reportedly, DHCP packets containing certain unspecified content have the capability to block the input queue of interfaces on affected devices.
Once an input queue is blocked, further ARP, and routing protocol packets will not be processed. This condition can only be corrected by rebooting the affected device.
An attacker with the ability to send malicious DHCP packets to an affected device may be able to interrupt the routing services of the affected device, potentially denying further network service to legitimate users.
Cisco IOS is reported susceptible to a remote denial of service vulnerability when handling specific DHCP packets.
Reportedly, DHCP packets containing certain unspecified content have the capability to block the input queue of interfaces on affected devices.
Once an input queue is blocked, further ARP, and routing protocol packets will not be processed. This condition can only be corrected by rebooting the affected device.
An attacker with the ability to send malicious DHCP packets to an affected device may be able to interrupt the routing services of the affected device, potentially denying further network service to legitimate users.
Exploit / POC
Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
Solution:
Cisco has released an advisory (cisco-sa-20041110-dhcp) addressing this issue. Please see the referenced advisory for further information on obtaining fixes.
The referenced Cisco advisory has been updated to reflect the vulnerability of version 12.2(20)EW.
Solution:
Cisco has released an advisory (cisco-sa-20041110-dhcp) addressing this issue. Please see the referenced advisory for further information on obtaining fixes.
The referenced Cisco advisory has been updated to reflect the vulnerability of version 12.2(20)EW.
References
Cisco IOS DHCP Input Queue Blocking Denial Of Service Vulnerability
References:
References: