Overview
A vulnerability in the way Cisco IOS handles IPv6 packets could result in a remotely exploitable denial of service.
Description
The Cisco Internetwork Operating System (IOS) includes support for processing Internet Protocol version 6 (IPv6) packets. Per Cisco Advisory cisco-sa-20080326-IPv4IPv6: |
Impact
A remote, unauthenticated attacker could cause a vulnerable system to crash or stop forwarding network traffic. |
Solution
Upgrade Cisco has made updates available to address this issue. |
|
Vendor Information
CVSS Metrics
| Group | Score | Vector |
|---|---|---|
| Base | ||
| Temporal | ||
| Environmental |
References
Acknowledgements
Thanks to Cisco for information that was used in this report.
This document was written by Ryan Giobbi.
Other Information
| CVE IDs: | CVE-2008-1153 |
| Severity Metric: | 10.55 |
| Date Public: | 2008-03-26 |
| Date First Published: | 2008-03-26 |
| Date Last Updated: | 2008-03-27 14:30 UTC |
| Document Revision: | 16 |