CVE-2004-0710
published 2004-07-27CVE-2004-0710: IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.01%
78.6th percentile
IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ipsec_malformed_ike_packet | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco0.0
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco IPSec Malformed IKE Packet Vulnerability
vendor_cisco·2004-04-08
CVE-2004-0710 CWE-399 Cisco IPSec Malformed IKE Packet Vulnerability
Cisco IPSec Malformed IKE Packet Vulnerability
A malformed Internet Key Exchange (IKE) packet may cause the Cisco
Catalyst 6500 Series Switch or the Cisco 7600 Series Internet Router to reload.
Only devices running Cisco IOS software with Crypto support are
affected.
This vulnerability is documented as Cisco bug ID CSCed30113. There are
workarounds available to mitigate the effects of this vulnerability.
Cisco has made free software available to address this vulnerability
for all affected customers.
The title of this advisory has been updated from "Cisco IPSec VPN
Services Module Malformed IKE Packet Vulnerability" to the current title due to
a change in the products affected no longer being limited to those devices with
a VPN Services Module installed.
This advisory will be posted at
h
Cisco
Cisco IPSec Malformed IKE Packet Vulnerability
vendor_cisco·CVSS 0.0
CVE-2004-0710 Cisco IPSec Malformed IKE Packet Vulnerability
CVE-2004-0710: Cisco IPSec Malformed IKE Packet Vulnerability
A malformed Internet Key Exchange (IKE) packet may cause the Cisco Catalyst 6500 Series Switch or the Cisco 7600 Series Internet Router to reload. Only devices running Cisco IOS software with Crypto support are affected. This vulnerability is documented as Cisco bug ID CSCed30113. There are
CVSS: 0.0
CWE: CWE-399, CWE-399
Bug IDs: CSCed30113, CSCed30113
GHSA
GHSA-mj8m-9w7q-7979: IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12
ghsa_unreviewed·2022-04-29
CVE-2004-0710 [MEDIUM] GHSA-mj8m-9w7q-7979: IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12
IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.cisco.com/warp/public/707/cisco-sa-20040408-vpnsm.shtmlhttp://www.kb.cert.org/vuls/id/904310http://www.securityfocus.com/bid/10083https://exchange.xforce.ibmcloud.com/vulnerabilities/15797https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5696http://www.cisco.com/warp/public/707/cisco-sa-20040408-vpnsm.shtmlhttp://www.kb.cert.org/vuls/id/904310http://www.securityfocus.com/bid/10083https://exchange.xforce.ibmcloud.com/vulnerabilities/15797https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5696
2004-07-27
Published