Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
BID:47977
Info
Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
| Bugtraq ID: | 47977 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2011-0943 |
| Remote: | Yes |
| Local: | No |
| Published: | May 25 2011 12:00AM |
| Updated: | May 25 2011 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco IOS XR 3.9.1 Cisco IOS XR 3.8.4 Cisco IOS XR 3.8.3 |
| Not Vulnerable: |
Cisco Ios Xr 3.9.2 |
Discussion
Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
Cisco IOS XR is prone to a remote denial-of-service vulnerability because certain response packets will cause the NetIO process to restart.
An attacker can exploit this issue to cause a denial-of-service condition.
This issue is being tracked by Cisco Bug ID CSCth44147.
Cisco IOS XR is prone to a remote denial-of-service vulnerability because certain response packets will cause the NetIO process to restart.
An attacker can exploit this issue to cause a denial-of-service condition.
This issue is being tracked by Cisco Bug ID CSCth44147.
Exploit / POC
Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
Attackers can exploit this issue with readily available network utilities.
Attackers can exploit this issue with readily available network utilities.
Solution / Fix
Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
Cisco IOS XR NetIO Process Remote Denial of Service Vulnerability
References:
References:
- Cisco Homepage (Cisco )
- Cisco Security Advisory: Cisco IOS XR Software IP Packet Vulnerability (Cisco Systems Product Security Incident Response Team
) - cisco-sa-20110525-iosxr Cisco Security Advisory: Cisco IOS XR Software IP Packet (Cisco)