CVE-2004-1454
published 2004-12-31CVE-2004-1454: Cisco IOS 12.0S, 12.2, and 12.3, with Open Shortest Path First (OSPF) enabled, allows remote attackers to cause a denial of service (device reload) via a…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
3.43%
87.6th percentile
Cisco IOS 12.0S, 12.2, and 12.3, with Open Shortest Path First (OSPF) enabled, allows remote attackers to cause a denial of service (device reload) via a malformed OSPF packet.
Affected
78 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gp76-q5qq-q7gp: Cisco IOS 12
ghsa_unreviewed·2022-04-29
CVE-2004-1454 [MEDIUM] GHSA-gp76-q5qq-q7gp: Cisco IOS 12
Cisco IOS 12.0S, 12.2, and 12.3, with Open Shortest Path First (OSPF) enabled, allows remote attackers to cause a denial of service (device reload) via a malformed OSPF packet.
Cisco
Cisco IOS Malformed OSPF Packet Causes Reload
vendor_cisco·2004-08-18
CVE-2004-1454 CWE-399 Cisco IOS Malformed OSPF Packet Causes Reload
Cisco IOS Malformed OSPF Packet Causes Reload
A Cisco device running Internetwork Operating System (IOS) ® and
enabled for the Open Shortest Path First (OSPF) protocol is vulnerable to a
Denial of Service (DoS) attack from a malformed OSPF packet. The OSPF protocol
is not enabled by default.
The vulnerability is only present in Cisco IOS release trains based on
12.0S, 12.2, and 12.3. Releases based on 12.0, 12.1 mainlines, and all Cisco
IOS images prior to 12.0 are not affected.
Cisco has made free software available to address this
vulnerability.
There are workarounds available to mitigate the effects.
This advisory is available at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20040818-ospf.
Cisco
Cisco IOS Malformed OSPF Packet Causes Reload
vendor_cisco
CVE-2004-1454 Cisco IOS Malformed OSPF Packet Causes Reload
CVE-2004-1454: Cisco IOS Malformed OSPF Packet Causes Reload
A Cisco device running Internetwork Operating System (IOS) � and enabled for the Open Shortest Path First (OSPF) protocol is vulnerable to a Denial of Service (DoS) attack from a malformed OSPF packet. The OSPF protocol is not enabled by default. The vulnerability is only present in Cisco IOS release trains based on 12.0S, 12.2, and 12.3. Releases based on 12.0, 12.1 mainlines, and all Cisco IOS images prior to 12.0 are not affected. Cisco has made free software available to address this vulnerability. There are
CWE: CWE-399, CWE-399
Bug IDs: CSCec16481, CSCec16481
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/12322http://www.ciac.org/ciac/bulletins/o-199.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20040818-ospf.shtmlhttp://www.kb.cert.org/vuls/id/989406http://www.securityfocus.com/bid/10971https://exchange.xforce.ibmcloud.com/vulnerabilities/17033http://secunia.com/advisories/12322http://www.ciac.org/ciac/bulletins/o-199.shtmlhttp://www.cisco.com/warp/public/707/cisco-sa-20040818-ospf.shtmlhttp://www.kb.cert.org/vuls/id/989406http://www.securityfocus.com/bid/10971https://exchange.xforce.ibmcloud.com/vulnerabilities/17033
2004-12-31
Published