CVE-2011-4007
02.05.2012, 10:09
Cisco IOS 15.0 and 15.1 and IOS XE 3.x do not properly handle the "set mpls experimental imposition" command, which allows remote attackers to cause a denial of service (device crash) via network traffic that triggers (1) fragmentation or (2) reassembly, aka Bug ID CSCtr56576.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | ios | 15.0 |
cisco | ios | 15.1 |
cisco | ios_xe | 3.1.0s:s |
cisco | ios_xe | 3.1.0sg:sg |
cisco | ios_xe | 3.1.1s:s |
cisco | ios_xe | 3.1.1sg:sg |
cisco | ios_xe | 3.1.2s:s |
cisco | ios_xe | 3.1.3s:s |
cisco | ios_xe | 3.1.4s:s |
cisco | ios_xe | 3.2.0s:s |
cisco | ios_xe | 3.2.0sg:sg |
cisco | ios_xe | 3.2.1s:s |
cisco | ios_xe | 3.2.1sg:sg |
cisco | ios_xe | 3.2.2s:s |
cisco | ios_xe | 3.3.0s:s |
cisco | ios_xe | 3.3.1s:s |
cisco | ios_xe | 3.3.2s:s |
cisco | ios_xe | 3.3.3s:s |
cisco | ios_xe | 3.4.0s:s |
cisco | ios_xe | 3.4.1s:s |
cisco | ios_xe | 3.5.0s:s |
𝑥
= Vulnerable software versions
Common Weakness Enumeration