Reported May 15, 2003, by
Cisco Systems
VERSIONS AFFECTED
Cisco IOS Software
DESCRIPTION
Cisco IOS software contains a
vulnerability that might result in a Denial of Service (DoS) attack. This
vulnerability stems from a flaw in the Service Assurance Agent, which is also
known as the Response Time Reporter (RTR). By sending a malformed RTR packet to
the router, a potential attacker can crash the router.
VENDOR RESPONSE
Cisco has released an
advisory
and free upgrades for affected customers, which can be obtained through normal
support channels.
CREDIT
Discovered by Cisco.
Denial of Service in Cisco IOS - 20 May 2003
0 comments
Hide comments