Overview
A vulnerability in the way Cisco IOS handles IPv6 packets could result in a remotely exploitable denial of service.
Description
The Cisco Internetwork Operating System (IOS) includes support for processing Internet Protocol version 6 (IPv6) packets. Per Cisco Advisory cisco-sa-20080326-IPv4IPv6: |
Impact
A remote, unauthenticated attacker could cause a vulnerable system to crash or stop forwarding network traffic. |
Solution
Upgrade Cisco has made updates available to address this issue. |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
Thanks to Cisco for information that was used in this report.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2008-1153 |
Severity Metric: | 10.55 |
Date Public: | 2008-03-26 |
Date First Published: | 2008-03-26 |
Date Last Updated: | 2008-03-27 14:30 UTC |
Document Revision: | 16 |