CVE-2005-0196
published 2005-05-02CVE-2005-0196: Cisco IOS 12.0 through 12.3YL, with BGP enabled and running the bgp log-neighbor-changes command, allows remote attackers to cause a denial of service (device…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
4.09%
89.5th percentile
Cisco IOS 12.0 through 12.3YL, with BGP enabled and running the bgp log-neighbor-changes command, allows remote attackers to cause a denial of service (device reload) via a malformed BGP packet.
Affected
197 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco IOS Misformed BGP Packet Causes Reload
vendor_cisco·2005-01-26
CVE-2005-0196 CWE-399 Cisco IOS Misformed BGP Packet Causes Reload
Cisco IOS Misformed BGP Packet Causes Reload
A Cisco device running IOS Border Gateway Protocol (BGP) is vulnerable
to a Denial of Service (DoS) attack from a malformed BGP packet. Only devices
with either the command bgp log-neighbor-changes
configured or the command snmp-server enable traps
bgp are vulnerable. The BGP protocol is not enabled by default,
and must be configured in order to accept traffic from an explicitly defined
peer. Unless the malicious traffic appears to be sourced from a configured,
trusted peer, it would be difficult to inject a malformed packet.
Cisco has made free software available to address this problem.
This issue is tracked by CERT/CC VU#689326.
This advisory will be posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cis
Cisco
Cisco IOS Misformed BGP Packet Causes Reload
vendor_cisco
CVE-2005-0196 Cisco IOS Misformed BGP Packet Causes Reload
CVE-2005-0196: Cisco IOS Misformed BGP Packet Causes Reload
A Cisco device running IOS Border Gateway Protocol (BGP) is vulnerable to a Denial of Service (DoS) attack from a malformed BGP packet. Only devices with either the command bgp log-neighbor-changes configured or the command snmp-server enable traps bgp are vulnerable. The BGP protocol is not enabled by default, and must be configured in order to accept traffic from an explicitly defined peer. Unless the malicious traffic appears to be sourced from a configured, trusted peer, it would be difficult to inject a malformed packet. Cisco has made free software available to address this problem. This issue is tracked by CERT/CC VU#689326. This advisory will be posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurit
GHSA
GHSA-p28q-g7cp-qp3q: Cisco IOS 12
ghsa_unreviewed·2022-05-01
CVE-2005-0196 [MEDIUM] GHSA-p28q-g7cp-qp3q: Cisco IOS 12
Cisco IOS 12.0 through 12.3YL, with BGP enabled and running the bgp log-neighbor-changes command, allows remote attackers to cause a denial of service (device reload) via a malformed BGP packet.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/14034http://securitytracker.com/id?1013013http://www.cisco.com/warp/public/707/cisco-sa-20050126-bgp.shtmlhttp://www.kb.cert.org/vuls/id/689326http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19074https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5652http://secunia.com/advisories/14034http://securitytracker.com/id?1013013http://www.cisco.com/warp/public/707/cisco-sa-20050126-bgp.shtmlhttp://www.kb.cert.org/vuls/id/689326http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19074https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5652
2005-05-02
Published