Cisco IOS Router Scan Software Reloading Vulnerability
BID:2804
Info
Cisco IOS Router Scan Software Reloading Vulnerability
| Bugtraq ID: | 2804 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 24 2001 12:00AM |
| Updated: | May 24 2001 12:00AM |
| Credit: | This vulnerability was announced to Bugtraq in a Cisco Security Advisory on May 24, 2001. |
| Vulnerable: |
Cisco IOS 12.1XT Cisco IOS 12.1XS Cisco IOS 12.1XQ Cisco IOS 12.1XP Cisco IOS 12.1XL Cisco IOS 12.1XK Cisco IOS 12.1XJ Cisco IOS 12.1XI Cisco IOS 12.1XH Cisco IOS 12.1XG Cisco IOS 12.1XF Cisco IOS 12.1XE Cisco IOS 12.1XC Cisco IOS 12.1XB Cisco IOS 12.1T Cisco IOS 12.1DC Cisco IOS 12.1DB |
| Not Vulnerable: |
Cisco IOS 12.2T Cisco IOS 12.2(1) Cisco IOS 12.1(5)XS Cisco IOS 12.1(5)T Cisco IOS 12.1(4.3)T Cisco IOS 12.1(4)DC Cisco IOS 12.1(4)DB |
Discussion
Cisco IOS Router Scan Software Reloading Vulnerability
Cisco IOS is the firmware Operating System designed for use on various Cisco hardware. It is maintained by Cisco systems.
A problem in IOS makes it possible to cause an arbitrary reload of the operating system. By initiating a TCP scan against a piece of Cisco hardware 3100-3999, 5100-5999,
7100-7999, and 10100-10999, the router becomes unstable and suffers memory corruption. Upon the next attempt to access the configuration, the router will unexpectedly reload the configuration.
This problem makes it possible for a remote user to cause an arbitrary reload of the router configuration, and potentially deny service to network assets.
Cisco IOS is the firmware Operating System designed for use on various Cisco hardware. It is maintained by Cisco systems.
A problem in IOS makes it possible to cause an arbitrary reload of the operating system. By initiating a TCP scan against a piece of Cisco hardware 3100-3999, 5100-5999,
7100-7999, and 10100-10999, the router becomes unstable and suffers memory corruption. Upon the next attempt to access the configuration, the router will unexpectedly reload the configuration.
This problem makes it possible for a remote user to cause an arbitrary reload of the router configuration, and potentially deny service to network assets.
Exploit / POC
Cisco IOS Router Scan Software Reloading Vulnerability
See discussion.
See discussion.
Solution / Fix
Cisco IOS Router Scan Software Reloading Vulnerability
Solution:
Upgrades available:
Cisco IOS 12.1XG
Cisco IOS 12.1DC
Cisco IOS 12.1XQ
Cisco IOS 12.1XJ
Cisco IOS 12.1XB
Cisco IOS 12.1XS
Cisco IOS 12.1XI
Cisco IOS 12.1XC
Cisco IOS 12.1XL
Cisco IOS 12.1XK
Cisco IOS 12.1XT
Cisco IOS 12.1XF
Cisco IOS 12.1XH
Cisco IOS 12.1DB
Cisco IOS 12.1XP
Cisco IOS 12.1XE
Solution:
Upgrades available:
Cisco IOS 12.1XG
Cisco IOS 12.1DC
Cisco IOS 12.1XQ
Cisco IOS 12.1XJ
Cisco IOS 12.1XB
Cisco IOS 12.1XS
Cisco IOS 12.1XI
Cisco IOS 12.1XC
Cisco IOS 12.1XL
Cisco IOS 12.1XK
Cisco IOS 12.1XT
Cisco IOS 12.1XF
Cisco IOS 12.1XH
Cisco IOS 12.1DB
Cisco IOS 12.1XP
Cisco IOS 12.1XE
References
Cisco IOS Router Scan Software Reloading Vulnerability
References:
References:
- Security Advisory: IOS Reload after Scanning Vulnerability (Cisco Systems)