ID

VAR-E-200507-0340


CVE

cve_id:CVE-2005-2451

Trust: 0.3

sources: BID: 14414

TITLE

Cisco IOS IPv6 Processing Arbitrary Code Execution Vulnerability

Trust: 0.3

sources: BID: 14414

DESCRIPTION

The IPv6 processing functionality of Cisco IOS is prone to a vulnerability that allows a remote attacker to execute arbitrary code.
A successful attack may allow the attacker to execute arbitrary code and gain unauthorized access to the device. The attacker can also leverage this issue to cause an affected device to reload, denying service to legitimate users.
This issue may be related to BID 12368 (Cisco IOS IPv6 Processing Remote Denial Of Service Vulnerability).
Cisco has stated that exploits of this vulnerability in Cisco IOS XR may cause the IPv6 neighbor discovery process to restart. If exploited repeatedly, this could result in a prolonged denial of service affecting IPv6 traffic traveling through the device.

Trust: 0.3

sources: BID: 14414

AFFECTED PRODUCTS

vendor:ciscomodel:ios 12.3scope:neversion: -

Trust: 2.4

vendor:ciscomodel:ios 12.2 sv1scope:neversion: -

Trust: 0.9

vendor:ciscomodel:ios 12.2xjscope: - version: -

Trust: 0.6

vendor:ciscomodel:iosscope:neversion:12.4(1)

Trust: 0.6

vendor:ciscomodel:ios 12.3 jascope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios 12.3 xc3scope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios 12.3 yjscope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios 12.2 sxd4scope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios 12.2 zd3scope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios 12.2 t16scope:neversion: -

Trust: 0.6

vendor:ciscomodel:ios xrscope:eqversion:3.1.0

Trust: 0.3

vendor:ciscomodel:ios xrscope:eqversion:3.0.1

Trust: 0.3

vendor:ciscomodel:ios xrscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.4tscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.4mrscope: - version: -

Trust: 0.3

vendor:ciscomodel:iosscope:eqversion:12.4

Trust: 0.3

vendor:ciscomodel:ios 12.3yuscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3ysscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yqscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3ykscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yjscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yiscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yhscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3ygscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yfscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3ydscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3yascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xyscope: - version: -

Trust: 0.3

vendor:ciscomodel:iosscope:eqversion:12.3xx

Trust: 0.3

vendor:ciscomodel:ios 12.3xwscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xuscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xtscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xsscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xrscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xqscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xmscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xlscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xkscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xjscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xiscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xhscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xgscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xfscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xdscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xbscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3xascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3tscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3jkscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3jascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3bwscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3bcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.3bscope: - version: -

Trust: 0.3

vendor:ciscomodel:iosscope:eqversion:12.3

Trust: 0.3

vendor:ciscomodel:ios 12.2zpscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zoscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2znscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zlscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zjscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zhscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zgscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zfscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zdscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2zascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2yzscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2yvscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2yuscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2ytscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xzscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xwscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xuscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xtscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xrscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xqscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xnscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xmscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xlscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xkscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xiscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xhscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xgscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xfscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xdscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xbscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2xascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2tscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2szscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2syscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sxescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sxdscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sxbscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sxascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2swscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2svscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2suscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2soscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2secscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sebscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2seascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2mxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2mcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2mbscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2jkscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2jascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2ezscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2eyscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2exscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2ewascope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2ewscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2euscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2dxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2ddscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2czscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2cyscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2cxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2bzscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2byscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2bxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2bwscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2bcscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.2bscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1yiscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1yhscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1yfscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1yescope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1ydscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1ycscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.1ybscope: - version: -

Trust: 0.3

vendor:ciscomodel:iosscope:eqversion:12.1xv

Trust: 0.3

vendor:ciscomodel:ios 12.1xuscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.0syscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.0sxscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.0stscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.0slscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios 12.0sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios xrscope:neversion:3.2

Trust: 0.3

vendor:ciscomodel:ios 12.4 tscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.4 mrscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 bc6scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 yi1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 yg2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 ya1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xy6scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 t8scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xr4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xi4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 t9scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 b5scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xq1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xk3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xg4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xe3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 xa4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 jkscope:neversion: -

Trust: 0.3

vendor:ciscomodel:iosscope:neversion:12.3(15)

Trust: 0.3

vendor:ciscomodel:ios 12.3 yuscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 ytscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 yq1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 t2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 bcscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 ywscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 ysscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 yf3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.3 t5scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ya10scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 mb13bscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 svscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sw3ascope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sv2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sec1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 seb3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 s4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ez1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ezscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ewa1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 s8scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ewa2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 ew2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 eu1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sxe1scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sv3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 s9scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 sxb8scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 mc2cscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 jk4scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 bc2hscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.2 s14scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.0 sscope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.0 s2scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.0 s3scope:neversion: -

Trust: 0.3

vendor:ciscomodel:ios 12.0 s6scope:neversion: -

Trust: 0.3

sources: BID: 14414

EXPLOIT

ISS has developed a working exploit for this issue through the "link local" interface. This exploit is not publicly available or known to be circulating in the wild.

Trust: 0.3

sources: BID: 14414

PRICE

Free

Trust: 0.3

sources: BID: 14414

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 14414

CREDITS

This issue was reported by Michael Lynn at the Black Hat security conference.

Trust: 0.3

sources: BID: 14414

EXTERNAL IDS

db:NVDid:CVE-2005-2451

Trust: 0.3

db:BIDid:14414

Trust: 0.3

sources: BID: 14414

REFERENCES

url:http://www.cisco.com/warp/public/707/cisco-sa-20050729-ipv6.shtml#details

Trust: 0.3

url:http://www.irmplc.com/download_pdf.php?src=cisco_ios_exploitation_techniques.pdf&force=yes

Trust: 0.3

url:http://xforce.iss.net/xforce/alerts/id/201

Trust: 0.3

sources: BID: 14414

SOURCES

db:BIDid:14414

LAST UPDATE DATE

2022-07-27T09:34:22.705000+00:00


SOURCES UPDATE DATE

db:BIDid:14414date:2007-06-28T03:58:00

SOURCES RELEASE DATE

db:BIDid:14414date:2005-07-27T00:00:00