Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.106307
Categoría:CISCO
Título:Cisco IOS Software Internet Key Exchange Version 1 Fragmentation Denial of Service Vulnerability
Resumen:A vulnerability in the Internet Key Exchange version 1 (IKEv1) fragmentation;code of Cisco IOS Software could allow an unauthenticated, remote attacker to cause an exhaustion of available;memory or a reload of the affected system.
Descripción:Summary:
A vulnerability in the Internet Key Exchange version 1 (IKEv1) fragmentation
code of Cisco IOS Software could allow an unauthenticated, remote attacker to cause an exhaustion of available
memory or a reload of the affected system.

Vulnerability Insight:
The vulnerability is due to the improper handling of crafted, fragmented
IKEv1 packets. An attacker could exploit this vulnerability by sending crafted UDP packets to the affected
system.

Vulnerability Impact:
An exploit could allow the attacker to cause a reload of the affected
system.

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
7.1

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:N/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2016-6381
BugTraq ID: 93195
http://www.securityfocus.com/bid/93195
Cisco Security Advisory: 20160928 Cisco IOS and IOS XE Software Internet Key Exchange Version 1 Fragmentation Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160928-ios-ikev1
http://www.securitytracker.com/id/1036914
CopyrightCopyright (C) 2016 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.