Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
BID:66628
Info
Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
| Bugtraq ID: | 66628 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-2143 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 03 2014 12:00AM |
| Updated: | Apr 08 2014 12:57AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco IOS 0 |
| Not Vulnerable: | |
Discussion
Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
Cisco IOS and IOS XE Software are prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause valid, established IKE security associations on an affected device to drop, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCun31021.
Cisco IOS and IOS XE Software are prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause valid, established IKE security associations on an affected device to drop, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCun31021.
Exploit / POC
Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
To exploit this issue, attackers can use readily available utilities.
To exploit this issue, attackers can use readily available utilities.
Solution / Fix
Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco IOS and IOS XE Software CVE-2014-2143 Denial of Service Vulnerability
References:
References:
- Cisco IOS Software (Cisco Systems)