CVE-2005-0195Failure to Handle Incomplete Element in Cisco IOS

Severity
5.0MEDIUMNVD
EPSS
2.0%
top 16.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 2
Latest updateMay 1

Description

Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDcisco/ios76 versions+75

Patches

🔴Vulnerability Details

1
GHSA
GHSA-9hcc-ghrw-wvh2: Cisco IOS 122022-05-01

📋Vendor Advisories

2
Cisco
Multiple Crafted IPv6 Packets Cause Reload2005-01-26
Cisco
Multiple Crafted IPv6 Packets Cause Reload

📐Framework References

1
CWE
Failure to Handle Incomplete Element

💬Community

2
Bugzilla
Multiple tar issues (CVE-2005-1918, CVE-2006-0300)2006-03-02
Bugzilla
CVE-2005-1918 tar archive path traversal issue2004-11-23