Vulnerability CVE-2004-1111


Published: 2005-01-10   Modified: 2012-02-12

Description:
Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size.

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:N/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
5/10
2.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
None
Partial
Affected software
Cisco -> 7200 router 
Cisco -> 7300 router 
Cisco -> 7500 router 
Cisco -> 7600 router 
Cisco -> Catalyst 7600 
Cisco -> Multiservice platform 2650 
Cisco -> Multiservice platform 2650xm 
Cisco -> Multiservice platform 2651 
Cisco -> Multiservice platform 2651xm 
Cisco -> IOS 

 References:
http://www.ciac.org/ciac/bulletins/p-034.shtml
http://www.cisco.com/warp/public/707/cisco-sa-20041110-dhcp.shtml
http://www.kb.cert.org/vuls/id/630104
http://www.us-cert.gov/cas/techalerts/TA04-316A.html
https://exchange.xforce.ibmcloud.com/vulnerabilities/18021
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5632

Copyright 2024, cxsecurity.com

 

Back to Top