CVE-2004-1111
published 2005-01-10CVE-2004-1111: Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep…
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.34%
81.7th percentile
Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios_dhcp_blocked_interface | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3rrq-mwrq-44vc: Cisco IOS 2
ghsa_unreviewed·2022-04-29
CVE-2004-1111 [MEDIUM] GHSA-3rrq-mwrq-44vc: Cisco IOS 2
Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size.
Cisco
Cisco IOS DHCP Blocked Interface Denial-of-Service
vendor_cisco·2004-11-10
CVE-2004-1111 CWE-399 Cisco IOS DHCP Blocked Interface Denial-of-Service
Cisco IOS DHCP Blocked Interface Denial-of-Service
Cisco IOS® devices running branches of Cisco IOS version 12.2S that
have Dynamic Host Configuration Protocol (DHCP) server or relay agent enabled,
even if not configured, are vulnerable to a denial of service where the input
queue becomes blocked when receiving specifically crafted DHCP packets. Cisco
is providing free fixed software to address this issue. There are also
workarounds to mitigate this vulnerability. This issue was introduced by the
fix included in CSCdx46180 and is being tracked by Cisco Bug ID
CSCee50294
(
registered customers only)
.
This advisory is available at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20041110-dhcp.
Cisco
Cisco IOS DHCP Blocked Interface Denial-of-Service
vendor_cisco
CVE-2004-1111 Cisco IOS DHCP Blocked Interface Denial-of-Service
CVE-2004-1111: Cisco IOS DHCP Blocked Interface Denial-of-Service
Cisco IOS� devices running branches of Cisco IOS version 12.2S that have Dynamic Host Configuration Protocol (DHCP) server or relay agent enabled, even if not configured, are vulnerable to a denial of service where the input queue becomes blocked when receiving specifically crafted DHCP packets. Cisco is providing free fixed software to address this issue. There are also
CWE: CWE-399, CWE-399
Bug IDs: CSCdx46180, CSCee50294, CSCdx46180
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.ciac.org/ciac/bulletins/p-034.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20041110-dhcp.shtmlhttp://www.kb.cert.org/vuls/id/630104http://www.us-cert.gov/cas/techalerts/TA04-316A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/18021https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5632http://www.ciac.org/ciac/bulletins/p-034.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20041110-dhcp.shtmlhttp://www.kb.cert.org/vuls/id/630104http://www.us-cert.gov/cas/techalerts/TA04-316A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/18021https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5632
2005-01-10
Published