CVE-2006-4776
published 2006-09-14CVE-2006-4776: Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) allows remote attackers to execute arbitrary code via a long VLAN…
high7.5CVSS 3.1
AVNACLAuNCPIPAP
Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) allows remote attackers to execute arbitrary code via a long VLAN name in a VTP type 2 summary advertisement.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
Cisco
Cisco IOS VTP VLAN Buffer Overflow Vulnerability
vendor_cisco·2006-09-13·CVSS 7.5
CVE-2006-4776 [HIGH] CWE-119 Cisco IOS VTP VLAN Buffer Overflow Vulnerability
Cisco IOS VTP VLAN Buffer Overflow Vulnerability
Cisco IOS contains a vulnerability that could allow an authenticated, remote attacker to execute arbitrary code.
The vulnerability exists due to improper input validation by the VTP feature of Cisco IOS. An authenticated, remote attacker could exploit this vulnerability by submitting a malicious VTP summary advertisement to an affected system. This action could result in a buffer overflow, resetting the affected system or allowing the attacker to execute arbitrary code.
Cisco confirmed this vulnerability in a security response and released updated software.
To exploit this vulnerability, the attacker must be able to craft a VTP summary advertisement packet that specifies a domain that matches the domain of the target system. This knowledg
GHSA
GHSA-x2rx-8768-8678: Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12
ghsa_unreviewed·2022-05-01·CVSS 7.8
CVE-2005-4826 [HIGH] GHSA-x2rx-8768-8678: Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12
Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(22)EA3 on Catalyst 2950T switches allows remote attackers to cause a denial of service (device reboot) via a crafted Subset-Advert message packet, a different issue than CVE-2006-4774, CVE-2006-4775, and CVE-2006-4776.
GHSA
GHSA-w4j4-63w3-w6m9: Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12
ghsa_unreviewed·2022-05-01
CVE-2006-4776 [HIGH] CWE-119 GHSA-w4j4-63w3-w6m9: Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12
Heap-based buffer overflow in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(19) allows remote attackers to execute arbitrary code via a long VLAN name in a VTP type 2 summary advertisement.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/21896http://securitytracker.com/id?1016843http://www.cisco.com/warp/public/707/cisco-sr-20060913-vtp.shtmlhttp://www.kb.cert.org/vuls/id/542108http://www.osvdb.org/28777http://www.phenoelit.de/stuff/CiscoVTP.txthttp://www.securityfocus.com/archive/1/445896/100/0/threadedhttp://www.securityfocus.com/archive/1/445938/100/0/threadedhttp://www.securityfocus.com/bid/19998http://www.vupen.com/english/advisories/2006/3600http://www.vupen.com/english/advisories/2006/3601https://exchange.xforce.ibmcloud.com/vulnerabilities/28927http://secunia.com/advisories/21896http://securitytracker.com/id?1016843http://www.cisco.com/warp/public/707/cisco-sr-20060913-vtp.shtmlhttp://www.kb.cert.org/vuls/id/542108http://www.osvdb.org/28777http://www.phenoelit.de/stuff/CiscoVTP.txthttp://www.securityfocus.com/archive/1/445896/100/0/threadedhttp://www.securityfocus.com/archive/1/445938/100/0/threadedhttp://www.securityfocus.com/bid/19998http://www.vupen.com/english/advisories/2006/3600http://www.vupen.com/english/advisories/2006/3601https://exchange.xforce.ibmcloud.com/vulnerabilities/28927
2006-09-14
Published