Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3806.
2008-09-26T16:21:44.190
2025-04-09T00:30:58.490
Deferred
CVSSv2: 8.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:P/A:C
10.0
7.8
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ios | 12.2b | Yes |
Operating System | cisco | ios | 12.2ca | Yes |
Operating System | cisco | ios | 12.2l | Yes |
Operating System | cisco | ios | 12.2rc | Yes |
Operating System | cisco | ios | 12.2s | Yes |
Operating System | cisco | ios | 12.2t | Yes |
Operating System | cisco | ios | 12.2zx | Yes |
Operating System | cisco | ios | 12.3bc | Yes |
Operating System | cisco | ios | 12.3t | Yes |
Operating System | cisco | ios | 12.3xi | Yes |
Operating System | cisco | ios | 12.4 | Yes |