CVE-2011-3279
published 2011-10-03CVE-2011-3279: The provider-edge MPLS NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial…
PriorityP335high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
2.56%
83.4th percentile
The provider-edge MPLS NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (device reload) via a malformed SIP packet to UDP port 5060, aka Bug ID CSCti98219.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | 12.1 – 12.4 | — |
| cisco | ios | 15.0 – 15.1 | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco IOS Software Network Address Translation Vulnerabilities
vendor_cisco·2011-09-28
CVE-2011-3276 Cisco IOS Software Network Address Translation Vulnerabilities
Cisco IOS Software Network Address Translation Vulnerabilities
The Cisco IOS Software network address translation (NAT) feature
contains multiple denial of service (DoS) vulnerabilities in the
translation of the following protocols:
NetMeeting Directory (Lightweight Directory Access Protocol, LDAP)
Session Initiation Protocol. (Multiple vulnerabilities)
H.323 protocol
All the vulnerabilities described in this document are caused
by packets in transit on the affected devices when those packets
require application layer translation.
Cisco has released software updates that address these vulnerabilities.
This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20110928-nat.
Note: The September 28, 2011, Cisco IOS
Software Securit
Cisco
Cisco IOS Software Network Address Translation Vulnerabilities
vendor_cisco
CVE-2011-3279 Cisco IOS Software Network Address Translation Vulnerabilities
CVE-2011-3279: Cisco IOS Software Network Address Translation Vulnerabilities
The Cisco IOS Software network address translation (NAT) feature contains multiple denial of service (DoS) vulnerabilities in the translation of the following protocols: NetMeeting Directory (Lightweight Directory Access Protocol, LDAP) Session Initiation Protocol. (Multiple vulnerabilities) H.323 protocol All the vulnerabilities described in this document are caused by packets in transit on the affected devices when those packets require application layer translation. Cisco has released software updates that address these vulnerabilities. This advisory is posted at https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20110928-nat . Note: The September 28, 2011, Cisco IOS Softwar
GHSA
GHSA-2765-4mww-988c: The provider-edge MPLS NAT implementation in Cisco IOS 12
ghsa_unreviewed·2022-05-17
CVE-2011-3279 [HIGH] GHSA-2765-4mww-988c: The provider-edge MPLS NAT implementation in Cisco IOS 12
The provider-edge MPLS NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (device reload) via a malformed SIP packet to UDP port 5060, aka Bug ID CSCti98219.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/viewAlert.x?alertId=24121http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95d4d.shtmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13781http://tools.cisco.com/security/center/viewAlert.x?alertId=24121http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95d4d.shtmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13781
2011-10-03
Published