Lucene search

K
ciscoCiscoCISCO-SA-20130327-IKE
HistoryMar 27, 2013 - 4:00 p.m.

Cisco IOS Software Internet Key Exchange Vulnerability

2013-03-2716:00:00
tools.cisco.com
31

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.002

Percentile

53.2%

The Cisco IOS Software Internet Key Exchange (IKE) feature contains a denial of service (DoS) vulnerability.

Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.

This advisory is available at the following link:

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130327-ike[“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130327-ike”]

Note: The March 27, 2013, Cisco IOS Software Security Advisory bundled publication includes seven Cisco Security Advisories. All advisories address vulnerabilities in Cisco IOS Software. Each Cisco IOS Software Security Advisory lists the Cisco IOS Software releases that correct the vulnerability or vulnerabilities detailed in the advisory as well as the Cisco IOS Software releases that correct all Cisco IOS Software vulnerabilities in the March 2013 bundled publication.

Individual publication links are in “Cisco Event Response: Semiannual Cisco IOS Software Security Advisory Bundled Publication” at the following link:

http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_mar13.html[“http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_mar13.html”]

Affected configurations

Vulners
Node
ciscoiosMatch15.1t
OR
ciscoiosMatch15.1xb
OR
ciscoiosMatch15.1gc
OR
ciscoiosMatch15.1\(2\)t
OR
ciscoiosMatch15.1\(1\)t4
OR
ciscoiosMatch15.1\(1\)t1
OR
ciscoiosMatch15.1\(2\)t0a
OR
ciscoiosMatch15.1\(1\)t3
OR
ciscoiosMatch15.1\(2\)t3
OR
ciscoiosMatch15.1\(2\)t4
OR
ciscoiosMatch15.1\(1\)t2
OR
ciscoiosMatch15.1\(2\)t2a
OR
ciscoiosMatch15.1\(1\)t
OR
ciscoiosMatch15.1\(2\)t2
OR
ciscoiosMatch15.1\(2\)t1
OR
ciscoiosMatch15.1\(2\)t5
OR
ciscoiosMatch15.1\(1\)t5
OR
ciscoiosMatch15.1\(1\)xb
OR
ciscoiosMatch15.1\(1\)xb3
OR
ciscoiosMatch15.1\(1\)xb1
OR
ciscoiosMatch15.1\(1\)xb2
OR
ciscoiosMatch15.1\(2\)gc
OR
ciscoiosMatch15.1\(2\)gc1
OR
ciscoiosMatch15.1\(2\)gc2
VendorProductVersionCPE
ciscoios15.1tcpe:2.3:o:cisco:ios:15.1t:*:*:*:*:*:*:*
ciscoios15.1xbcpe:2.3:o:cisco:ios:15.1xb:*:*:*:*:*:*:*
ciscoios15.1gccpe:2.3:o:cisco:ios:15.1gc:*:*:*:*:*:*:*
ciscoios15.1(2)tcpe:2.3:o:cisco:ios:15.1\(2\)t:*:*:*:*:*:*:*
ciscoios15.1(1)t4cpe:2.3:o:cisco:ios:15.1\(1\)t4:*:*:*:*:*:*:*
ciscoios15.1(1)t1cpe:2.3:o:cisco:ios:15.1\(1\)t1:*:*:*:*:*:*:*
ciscoios15.1(2)t0acpe:2.3:o:cisco:ios:15.1\(2\)t0a:*:*:*:*:*:*:*
ciscoios15.1(1)t3cpe:2.3:o:cisco:ios:15.1\(1\)t3:*:*:*:*:*:*:*
ciscoios15.1(2)t3cpe:2.3:o:cisco:ios:15.1\(2\)t3:*:*:*:*:*:*:*
ciscoios15.1(2)t4cpe:2.3:o:cisco:ios:15.1\(2\)t4:*:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.002

Percentile

53.2%

Related for CISCO-SA-20130327-IKE