CVE-2009-0638
published 2009-08-21CVE-2009-0638: The Cisco Firewall Services Module (FWSM) 2.x, 3.1 before 3.1(16), 3.2 before 3.2(13), and 4.0 before 4.0(6) for Cisco Catalyst 6500 switches and Cisco 7600…
PriorityP434high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
2.85%
85.1th percentile
The Cisco Firewall Services Module (FWSM) 2.x, 3.1 before 3.1(16), 3.2 before 3.2(13), and 4.0 before 4.0(6) for Cisco Catalyst 6500 switches and Cisco 7600 routers allows remote attackers to cause a denial of service (traffic-handling outage) via a series of malformed ICMP messages.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
| cisco | firewall_services_module | — | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jmpc-v965-868j: The Cisco Firewall Services Module (FWSM) 2
ghsa_unreviewed·2022-05-02
CVE-2009-0638 [HIGH] GHSA-jmpc-v965-868j: The Cisco Firewall Services Module (FWSM) 2
The Cisco Firewall Services Module (FWSM) 2.x, 3.1 before 3.1(16), 3.2 before 3.2(13), and 4.0 before 4.0(6) for Cisco Catalyst 6500 switches and Cisco 7600 routers allows remote attackers to cause a denial of service (traffic-handling outage) via a series of malformed ICMP messages.
Cisco
Firewall Services Module Crafted ICMP Message Vulnerability
vendor_cisco·2009-08-19·CVSS 7.8
CVE-2009-0638 [HIGH] CWE-399 Firewall Services Module Crafted ICMP Message Vulnerability
Firewall Services Module Crafted ICMP Message Vulnerability
A vulnerability exists in the Cisco Firewall Services Module (FWSM) for
the Catalyst 6500 Series Switches and Cisco 7600 Series Routers. The
vulnerability may cause the FWSM to stop forwarding traffic and may be
triggered while processing multiple, crafted ICMP messages.
There are no known instances of intentional exploitation of this
vulnerability. However, Cisco has observed data streams that appear to trigger
this vulnerability unintentionally.
Cisco has released software updates that address this vulnerability.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20090819-fwsm.
Cisco
Firewall Services Module Crafted ICMP Message Vulnerability
vendor_cisco
CVE-2009-0638 Firewall Services Module Crafted ICMP Message Vulnerability
CVE-2009-0638: Firewall Services Module Crafted ICMP Message Vulnerability
A vulnerability exists in the Cisco Firewall Services Module (FWSM) for the Catalyst 6500 Series Switches and Cisco 7600 Series Routers. The vulnerability may cause the FWSM to stop forwarding traffic and may be triggered while processing multiple, crafted ICMP messages. There are no known instances of intentional exploitation of this vulnerability. However, Cisco has observed data streams that appear to trigger this vulnerability unintentionally. Cisco has released software updates that address this vulnerability. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20090819-fwsm .
CWE: CWE-399, CWE-399
Bug IDs: CSCsz97207
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/36373http://securitytracker.com/id?1022747http://www.cisco.com/en/US/products/products_security_advisory09186a0080af0d1d.shtmlhttp://www.securityfocus.com/bid/36085http://www.vupen.com/english/advisories/2009/2329https://exchange.xforce.ibmcloud.com/vulnerabilities/52591http://secunia.com/advisories/36373http://securitytracker.com/id?1022747http://www.cisco.com/en/US/products/products_security_advisory09186a0080af0d1d.shtmlhttp://www.securityfocus.com/bid/36085http://www.vupen.com/english/advisories/2009/2329https://exchange.xforce.ibmcloud.com/vulnerabilities/52591
2009-08-21
Published