CVE-2005-0195
published 2005-05-02CVE-2005-0195: Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
3.69%
88.4th percentile
Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.
Affected
76 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9hcc-ghrw-wvh2: Cisco IOS 12
ghsa_unreviewed·2022-05-01
CVE-2005-0195 [MEDIUM] GHSA-9hcc-ghrw-wvh2: Cisco IOS 12
Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.
Cisco
Multiple Crafted IPv6 Packets Cause Reload
vendor_cisco·2005-01-26
CVE-2005-0195 CWE-399 Multiple Crafted IPv6 Packets Cause Reload
Multiple Crafted IPv6 Packets Cause Reload
Cisco Internetwork Operating System (IOS) Software is vulnerable to a
Denial of Service (DoS) attack from crafted IPv6 packets when the device has
been configured to process IPv6 traffic. This vulnerability requires multiple
crafted packets to be sent to the device which may result in a reload upon
successful exploitation.
Cisco has made free software available to address this vulnerability.
There are workarounds available to mitigate the effects.
This issue is tracked by CERT/CC VU#472582
This advisory is available at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20050126-ipv6.
Cisco
Multiple Crafted IPv6 Packets Cause Reload
vendor_cisco
CVE-2005-0195 Multiple Crafted IPv6 Packets Cause Reload
CVE-2005-0195: Multiple Crafted IPv6 Packets Cause Reload
Cisco Internetwork Operating System (IOS) Software is vulnerable to a Denial of Service (DoS) attack from crafted IPv6 packets when the device has been configured to process IPv6 traffic. This vulnerability requires multiple crafted packets to be sent to the device which may result in a reload upon successful exploitation. Cisco has made free software available to address this vulnerability. There are
CWE: CWE-399, CWE-399
Bug IDs: CSCed40933
No detection rules found.
No public exploits indexed.
Bugzilla
Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
bugzilla·2006-03-02·CVSS 5.0
CVE-2005-1918 [MEDIUM] Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
There are two separate issues that affect different subsets of our products.
I. RHL 7.3, RHL 9, FC1 & FC2: tar archive path traversal issue
CVE-2005-1918: "The original patch for a GNU tar directory traversal
vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses
an 'incorrect optimization' that allows user-complicit attackers to over-
write arbitrary files via a crafted tar file, probably involving '/../'
sequences with a leading '/'."
This vulnerability appears to only affect tar-1.13.25 releases, which
these four distros use.
Red Hat issued RHSA-2006:0195-01 for RHEL 2.1 and RHEL 3:
"In 2002, a path traversal flaw was found in the way GNU tar extracted
archives. A malicious user could create a tar archive that cou
Bugzilla
CVE-2005-1918 tar archive path traversal issue
bugzilla·2004-11-23·CVSS 2.6
CVE-2005-1918 [LOW] CVE-2005-1918 tar archive path traversal issue
CVE-2005-1918 tar archive path traversal issue
Placeholder for RHEL2.1 issue.
See bug 140589 for more information.
Discussion:
Lifting embargo
---
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0195.html
http://www.cisco.com/warp/public/707/cisco-sa-20050126-ipv6.shtmlhttp://www.kb.cert.org/vuls/id/472582http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19072https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5813http://www.cisco.com/warp/public/707/cisco-sa-20050126-ipv6.shtmlhttp://www.kb.cert.org/vuls/id/472582http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19072https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5813
2005-05-02
Published