Overview
Brocade BigIron RX switch devices are susceptible to an access control list (ACL) bypass vulnerability by sending packets with the source port 179.
Description
Brocade BigIron RX switch devices do not properly restricted packets sent with a source port of 179. Port 179 is commonly used for Border Gateway Protocol (BGP) communication. It has been reported that individual packets with a source port of 179 are allowed through, as well as, full SSH and RDP sessions. |
Impact
A remote unauthenticated attacker can bypass any ACL rule on a BigIron RX switch device. |
Solution
Apply an Update Brocade has created software defect 355173 for this issue. The following patch releases address this vulnerability; RX 2.8.00a, 2.7.03b, and 2.7.02l. Customers should contact Brocade support to download these updates. |
Workaround
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
Thanks to Bashar Ewaida for reporting this vulnerability.
This document was written by Jared Allar.
Other Information
CVE IDs: | CVE-2011-4884 |
Severity Metric: | 0.28 |
Date Public: | 2011-07-13 |
Date First Published: | 2011-07-13 |
Date Last Updated: | 2012-02-03 21:02 UTC |
Document Revision: | 25 |