The Multicast Source Discovery Protocol (MSDP) implementation in Cisco IOS 12.0, 12.2 through 12.4, and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.1S and 3.1.xSG and 3.2.xSG before 3.2.2SG allows remote attackers to cause a denial of service (device reload) via encapsulated IGMP data in an MSDP packet, aka Bug ID CSCtr28857.
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
AV:N/AC:L/Au:N/C:N/I:N/A:C
Vendors | Products |
---|---|
Cisco |
|
Configuration 1 [-]
|
Configuration 2 [-]
|
Configuration 3 [-]
|
Configuration 4 [-]
|
Configuration 5 [-]
|
References
Link | Resource |
---|---|
http://osvdb.org/80693 | Broken Link |
http://secunia.com/advisories/48630 | Not Applicable |
http://secunia.com/advisories/48633 | Not Applicable |
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120328-msdp | Vendor Advisory |
http://www.securityfocus.com/bid/52759 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id?1026868 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/74431 | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2012-03-29T10:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-01-04T00:00:00
Link: CVE-2012-0382
JSON object: View
NVD Information
Status : Analyzed
Published: 2012-03-29T11:01:16.107
Modified: 2020-07-30T19:39:13.080
Link: CVE-2012-0382
JSON object: View
Redhat Information
No data.
CWE