CVE-2010-0577
published 2010-03-25CVE-2010-0577: Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite…
high7.1CVSS 3.1
AVNACMAuNCNINAC
Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite loop, and device reload or hang) via a TCP segment with crafted options, aka Bug ID CSCsz75186.
Affected
137 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
Cisco
Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
vendor_cisco·2010-03-24·CVSS 7.1
CVE-2010-0577 [HIGH] CWE-399 Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
Cisco IOS® Software is affected by a denial
of service vulnerability that may allow a remote unauthenticated attacker to
cause an affected device to reload or hang. The vulnerability may be triggered
by a TCP segment containing crafted TCP options that is received during the TCP
session establishment phase. In addition to specific, crafted TCP options, the
device must have a special configuration to be affected by this
vulnerability.
Cisco has released software updates that address this vulnerability.
This advisory is posted at
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20100324-tcp.
Note: The March 24, 2010, Cisco IOS Software Security Advisory bundled
publication includes s
Cisco
Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
vendor_cisco
CVE-2010-0577 Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
CVE-2010-0577: Cisco IOS Software Crafted TCP Packet Denial of Service Vulnerability
Cisco IOS ® Software is affected by a denial of service vulnerability that may allow a remote unauthenticated attacker to cause an affected device to reload or hang. The vulnerability may be triggered by a TCP segment containing crafted TCP options that is received during the TCP session establishment phase. In addition to specific, crafted TCP options, the device must have a special configuration to be affected by this vulnerability. Cisco has released software updates that address this vulnerability. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20100324-tcp . Note: The March 24, 2010, Cisco IOS Software Security Advisory bundled publica
GHSA
GHSA-2q84-j32v-48rc: Cisco IOS 12
ghsa_unreviewed·2022-05-02
CVE-2010-0577 [HIGH] GHSA-2q84-j32v-48rc: Cisco IOS 12
Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite loop, and device reload or hang) via a TCP segment with crafted options, aka Bug ID CSCsz75186.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/63178http://secunia.com/advisories/39078http://www.cisco.com/en/US/products/products_security_advisory09186a0080b20f34.shtmlhttp://www.securityfocus.com/bid/38930http://www.securitytracker.com/id?1023743http://www.vupen.com/english/advisories/2010/0703https://exchange.xforce.ibmcloud.com/vulnerabilities/57129http://osvdb.org/63178http://secunia.com/advisories/39078http://www.cisco.com/en/US/products/products_security_advisory09186a0080b20f34.shtmlhttp://www.securityfocus.com/bid/38930http://www.securitytracker.com/id?1023743http://www.vupen.com/english/advisories/2010/0703https://exchange.xforce.ibmcloud.com/vulnerabilities/57129
2010-03-25
Published