Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
BID:71287
Info
Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
| Bugtraq ID: | 71287 |
| Class: | Race Condition Error |
| CVE: |
CVE-2014-8005 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 25 2014 12:00AM |
| Updated: | Nov 25 2014 12:00AM |
| Credit: | Cisco |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
Cisco IOS XR Software is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to cause the lighttpd process to reload, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCuq45239.
Cisco IOS XR Software is prone to a remote denial-of-service vulnerability.
Attackers can exploit this issue to cause the lighttpd process to reload, denying service to legitimate users.
This issue is being tracked by Cisco Bug ID CSCuq45239.
Exploit / POC
Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.
Solution / Fix
Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco IOS XR Software CVE-2014-8005 TCP Session Denial of Service Vulnerability
References:
References:
- Cisco Homepage (Cisco )
- Cisco IOS XR Software Homepage (Cisco)