Executive Summary

Summary
Title Cisco IOS Software IPv6 over MPLS Vulnerabilities
Informations
Name cisco-sa-20110928-ipv6mpls First vendor Publication 2011-06-15
Vendor Cisco Last vendor Modification 2011-09-28
Severity (Vendor) N/A Revision 1.0

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:C)
Cvss Base Score 7.8 Attack Range Network
Cvss Impact Score 6.9 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Cisco IOS Software is affected by two vulnerabilities that cause a Cisco IOS device to reload when processing IP version 6 (IPv6) packets over a Multiprotocol Label Switching (MPLS) domain. These vulnerabilities are:

* Crafted IPv6 Packet May Cause MPLS-Configured Device to Reload
* ICMPv6 Packet May Cause MPLS-Configured Device to Reload

Cisco has released free software updates that address these vulnerabilities.

Workarounds that mitigate these vulnerabilities are available.

Original Source

Url : http://www.cisco.com/en/US/products/products_security_advisory09186a0080b9 (...)

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 8
Os 29

Open Source Vulnerability Database (OSVDB)

Id Description
76071 Cisco IOS Expired MPLS TTL ICMPv6 Packet Parsing Remote DoS

76070 Cisco IOS Expired MPLS TTL IPv6 Packet Parsing Remote DoS

Nessus® Vulnerability Scanner

Date Description
2011-09-29 Name : The remote device is missing a vendor-supplied security patch.
File : cisco-sa-20110928-ipv6mplshttp.nasl - Type : ACT_GATHER_INFO

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2014-02-17 10:22:01
  • Multiple Updates