CVE-2002-0339
published 2002-06-25CVE-2002-0339: Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the…
PriorityP419medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.78%
75.7th percentile
Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | express_forwarding_enabled | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Data Leak with Cisco Express Forwarding Enabled
vendor_cisco·2002-02-27
CVE-2002-0339 CWE-200 Data Leak with Cisco Express Forwarding Enabled
Data Leak with Cisco Express Forwarding Enabled
Excluding Cisco 12000 Series Internet Routers, all Cisco devices
running Cisco IOS® software that have Cisco Express Forwarding (CEF) enabled
can leak information from previous packets that have been handled by the
device. This can happen if the packet length described in the IP header is
bigger than the physical packet size. Packets like these will be expanded to
fit the IP length and, during that expansion, an information leak may occur.
Please note that an attacker can only collect parts of some packets but not the
whole session.
No other Cisco product is vulnerable. Devices that have fast switching
enabled are not affected by this vulnerability. Cisco 12000 Series Internet
Routers are not affected by this vulnerability.
The workaround
Cisco
Data Leak with Cisco Express Forwarding Enabled
vendor_cisco
CVE-2002-0339 Data Leak with Cisco Express Forwarding Enabled
CVE-2002-0339: Data Leak with Cisco Express Forwarding Enabled
Excluding Cisco 12000 Series Internet Routers, all Cisco devices running Cisco IOS� software that have Cisco Express Forwarding (CEF) enabled can leak information from previous packets that have been handled by the device. This can happen if the packet length described in the IP header is bigger than the physical packet size. Packets like these will be expanded to fit the IP length and, during that expansion, an information leak may occur. Please note that an attacker can only collect parts of some packets but not the whole session. No other Cisco product is vulnerable. Devices that have fast switching enabled are not affected by this vulnerability. Cisco 12000 Series Internet Routers are not affected by this vulnerability. The
GHSA
GHSA-9837-m8h3-j3ch: Cisco IOS 11
ghsa_unreviewed·2022-04-30
CVE-2002-0339 [MEDIUM] GHSA-9837-m8h3-j3ch: Cisco IOS 11
Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.cisco.com/warp/public/707/IOS-CEF-pub.shtmlhttp://www.iss.net/security_center/static/8296.phphttp://www.kb.cert.org/vuls/id/310387http://www.osvdb.org/806http://www.securityfocus.com/bid/4191http://www.cisco.com/warp/public/707/IOS-CEF-pub.shtmlhttp://www.iss.net/security_center/static/8296.phphttp://www.kb.cert.org/vuls/id/310387http://www.osvdb.org/806http://www.securityfocus.com/bid/4191
2002-06-25
Published