Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
BID:28463
Info
Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
| Bugtraq ID: | 28463 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2008-0537 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 26 2008 12:00AM |
| Updated: | Mar 26 2008 09:09PM |
| Credit: | The vendor disclosed this vulnerability. |
| Vulnerable: |
Cisco ME6524 0 Cisco IOS 12.2ZU Cisco IOS 12.2SXE Cisco IOS 12.2SXD Cisco IOS 12.2SXB Cisco IOS 12.2SXA Cisco IOS 12.2SRA Cisco IOS 12.2IXE Cisco IOS 12.2IXD Cisco IOS 12.2IXC Cisco IOS 12.2IXB Cisco IOS 12.2IXA Cisco Catalyst 6500 Sup720-3BXL Cisco Catalyst 6500 Sup720-3B Cisco Catalyst 6500 Sup720 Cisco Catalyst 6500 Sup32 Cisco 7600 Sup720-3BXL Cisco 7600 Sup720-3B Cisco 7600 Sup720 Cisco 7600 Sup32 Cisco 7600 RSP720-3CXL Cisco 7600 RSP720-3C Cisco 7600 RSP720 |
| Not Vulnerable: |
Cisco IOS 12.2SXH Cisco IOS 12.2SXF Cisco IOS 12.2IXF Cisco IOS 12.2(33)SXH2 Cisco IOS 12.2(33)SRA7 Cisco IOS 12.2(33)SRA4 Cisco IOS 12.2(18)SXF13 |
Discussion
Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
Multiple Cisco products running Cisco IOS (Internetwork Operating System) with OSPF (Open Shortest Path First) or MPLS VPN (Multi Protocol Label Switching Virtual Private Networking) are prone to a denial-of-service vulnerability caused by a blocked queue, a memory leak, or a restart of the device.
An attacker can exploit this issue to prevent any traffic from entering affected devices, causing denial-of-service conditions for legitimate users.
The following devices are affected:
Cisco Catalyst 6500 Series devices with the Sup32, Sup720, Sup720-3B, or Sup720-3BXL
Cisco 7600 Series devices with the Sup32, Sup720, Sup720-3B, or Sup720-3BXL
Cisco 7600 Series devices with the RSP720, RSP720-3C, or RSP720-3CXL
Cisco ME 6524 Ethernet Switch
Some Cisco IOS branches based on 12.2 are vulnerable only when combined with hardware based on specific Catalyst Supervisor Engines (Sup32, Sup720, or RSP720) and configured with MPLS VPN and OSPF sham-link.
NOTE: OSPF and MPLS VPN are not enabled by default.
Multiple Cisco products running Cisco IOS (Internetwork Operating System) with OSPF (Open Shortest Path First) or MPLS VPN (Multi Protocol Label Switching Virtual Private Networking) are prone to a denial-of-service vulnerability caused by a blocked queue, a memory leak, or a restart of the device.
An attacker can exploit this issue to prevent any traffic from entering affected devices, causing denial-of-service conditions for legitimate users.
The following devices are affected:
Cisco Catalyst 6500 Series devices with the Sup32, Sup720, Sup720-3B, or Sup720-3BXL
Cisco 7600 Series devices with the Sup32, Sup720, Sup720-3B, or Sup720-3BXL
Cisco 7600 Series devices with the RSP720, RSP720-3C, or RSP720-3CXL
Cisco ME 6524 Ethernet Switch
Some Cisco IOS branches based on 12.2 are vulnerable only when combined with hardware based on specific Catalyst Supervisor Engines (Sup32, Sup720, or RSP720) and configured with MPLS VPN and OSPF sham-link.
NOTE: OSPF and MPLS VPN are not enabled by default.
Exploit / POC
Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
Solution:
The vendor has released updates. Please see the referenced advisory for more information.
Solution:
The vendor has released updates. Please see the referenced advisory for more information.
References
Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability
References:
References:
- Cisco Homepage (Cisco )
- Cisco Security Advisory: Vulnerability in Cisco IOS with OSPF, MPLS VPN, and Sup (Cisco Systems Product Security Incident Response Team