CVE-2005-0197
published 2005-05-02CVE-2005-0197: Cisco IOS 12.1T, 12.2, 12.2T, 12.3 and 12.3T, with Multi Protocol Label Switching (MPLS) installed but disabled, allows remote attackers to cause a denial of…
PriorityP419medium6.1CVSS 2.0
AVAACLAuNCNINAC
EPSS
1.70%
74.6th percentile
Cisco IOS 12.1T, 12.2, 12.2T, 12.3 and 12.3T, with Multi Protocol Label Switching (MPLS) installed but disabled, allows remote attackers to cause a denial of service (device reload) via a crafted packet sent to the disabled interface.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | routers | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Crafted Packet Causes Reload on Cisco Routers
vendor_cisco·2005-01-26
CVE-2005-0197 CWE-22 Crafted Packet Causes Reload on Cisco Routers
Crafted Packet Causes Reload on Cisco Routers
Cisco Routers running Internetwork Operating System (IOS) that supports Multi Protocol Label Switching (MPLS) are vulnerable to a Denial of Service (DoS) attack on interfaces where MPLS is not configured. A system that supports MPLS is vulnerable even if that system is not configured for MPLS.
The vulnerability is only present in Cisco IOS release trains based on 12.1T, 12.2, 12.2T, 12.3 and 12.3T. Releases based on 12.1 mainline, 12.1E and all releases prior to 12.1 are not vulnerable.
Cisco has made free software available to address this vulnerability.
There are workarounds available to mitigate the effects.
This issue is tracked by CERT/CC VU#583638.
This advisory is available at https://sec.cloudapps.cisco.com/security/center/content/Cis
Cisco
Crafted Packet Causes Reload on Cisco Routers
vendor_cisco
CVE-2005-0197 Crafted Packet Causes Reload on Cisco Routers
CVE-2005-0197: Crafted Packet Causes Reload on Cisco Routers
Cisco Routers running Internetwork Operating System (IOS) that supports Multi Protocol Label Switching (MPLS) are vulnerable to a Denial of Service (DoS) attack on interfaces where MPLS is not configured. A system that supports MPLS is vulnerable even if that system is not configured for MPLS. The vulnerability is only present in Cisco IOS release trains based on 12.1T, 12.2, 12.2T, 12.3 and 12.3T. Releases based on 12.1 mainline, 12.1E and all releases prior to 12.1 are not vulnerable. Cisco has made free software available to address this vulnerability. There are
CWE: CWE-22, CWE-22
Bug IDs: CSCeb56909, CSCeb56909, CSCec86420
GHSA
GHSA-p6j5-5ppm-w335: Cisco IOS 12
ghsa_unreviewed·2022-05-01
CVE-2005-0197 [MEDIUM] GHSA-p6j5-5ppm-w335: Cisco IOS 12
Cisco IOS 12.1T, 12.2, 12.2T, 12.3 and 12.3T, with Multi Protocol Label Switching (MPLS) installed but disabled, allows remote attackers to cause a denial of service (device reload) via a crafted packet sent to the disabled interface.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/14031http://securitytracker.com/id?1013015http://www.cisco.com/warp/public/707/cisco-sa-20050126-les.shtmlhttp://www.kb.cert.org/vuls/id/583638http://www.securityfocus.com/bid/12369http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19071https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5662http://secunia.com/advisories/14031http://securitytracker.com/id?1013015http://www.cisco.com/warp/public/707/cisco-sa-20050126-les.shtmlhttp://www.kb.cert.org/vuls/id/583638http://www.securityfocus.com/bid/12369http://www.us-cert.gov/cas/techalerts/TA05-026A.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/19071https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5662
2005-05-02
Published