Cisco IOS BGP Transitive Attribute Denial of Service Vulnerability
BID:2733
Info
Cisco IOS BGP Transitive Attribute Denial of Service Vulnerability
| Bugtraq ID: | 2733 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 10 2001 12:00AM |
| Updated: | May 10 2001 12:00AM |
| Credit: | This vulnerability was announced iva Bugtraq in a Cisco Security Advisory on May 10, 2001. |
| Vulnerable: |
Cisco IOS 12.0XJ Cisco IOS 12.0XI Cisco IOS 12.0XH Cisco IOS 12.0XG Cisco IOS 12.0XF Cisco IOS 12.0XE Cisco IOS 12.0XD Cisco IOS 12.0XC Cisco IOS 12.0XB Cisco IOS 12.0XA Cisco IOS 12.0W5 Cisco IOS 12.0T Cisco IOS 12.0S Cisco IOS 12.0DC Cisco IOS 12.0DB Cisco IOS 12.0DA Cisco IOS 12.0 Cisco IOS 11.3WA4 Cisco IOS 11.3T Cisco IOS 11.3NA Cisco IOS 11.3HA Cisco IOS 11.3DB Cisco IOS 11.3DA Cisco IOS 11.3AA Cisco IOS 11.3 Cisco IOS 11.2P Cisco IOS 11.2GS Cisco IOS 11.2F Cisco IOS 11.2BC Cisco IOS 11.2(4)XAf Cisco IOS 11.2(4)XA Cisco IOS 11.2 |
| Not Vulnerable: |
Cisco IOS 12.1(8) Cisco IOS 12.1(5)DC Cisco IOS 12.1(5)DA1 Cisco IOS 12.1(4)DB1 Cisco IOS 12.1 Cisco IOS 12.0XW Cisco IOS 12.0XV Cisco IOS 12.0XU Cisco IOS 12.0XS Cisco IOS 12.0XR Cisco IOS 12.0XQ Cisco IOS 12.0XP Cisco IOS 12.0XN Cisco IOS 12.0XM Cisco IOS 12.0XL Cisco IOS 12.0XK Cisco IOS 12.0(5)T Cisco IOS 12.0(17)S Cisco IOS 12.0(17) Cisco IOS 12.0(16.06)S Cisco IOS 12.0(16)W5(21) Cisco IOS 12.0(15)S3 Cisco IOS 12.0(10)W5 Cisco IOS 11.1 |
Discussion
Cisco IOS BGP Transitive Attribute Denial of Service Vulnerability
IOS is the firmware designed for Cisco routers. IOS is a router specific firmware designed to allow networkers the ability to configure and control Cisco routers.
A problem in IOS can allow remote users to crash Cisco routers. Upon receiving an unrecognized transitive attribute in a BGP UPDATE message, this can cause a Cisco router using an affected version of IOS to crash.
This problem makes it possible for a remote user to crash Cisco routers using BGP, and deny service to legitimate users.
IOS is the firmware designed for Cisco routers. IOS is a router specific firmware designed to allow networkers the ability to configure and control Cisco routers.
A problem in IOS can allow remote users to crash Cisco routers. Upon receiving an unrecognized transitive attribute in a BGP UPDATE message, this can cause a Cisco router using an affected version of IOS to crash.
This problem makes it possible for a remote user to crash Cisco routers using BGP, and deny service to legitimate users.
Exploit / POC
Cisco IOS BGP Transitive Attribute Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.