CVE-2013-3464
published 2013-08-13CVE-2013-3464: Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload) by…
PriorityP416medium4.6CVSS 2.0
AVLACLAuSCNINAC
EPSS
0.31%
23.5th percentile
Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload) by starting an outbound flood of large ICMP Echo Request packets and stopping this with a CTRL-C sequence, aka Bug ID CSCui60347.
Affected
57 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
CVSS provenance
nvdv2.04.6MEDIUMAV:L/AC:L/Au:S/C:N/I:N/A:C
vendor_redhat5.5MEDIUM
vendor_cisco4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-25r8-4ph4-p8ww: Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload)
ghsa_unreviewed·2022-05-17
CVE-2013-3464 [MEDIUM] CWE-119 GHSA-25r8-4ph4-p8ww: Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload)
Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload) by starting an outbound flood of large ICMP Echo Request packets and stopping this with a CTRL-C sequence, aka Bug ID CSCui60347.
Red Hat
WS: Incomplete fix for CVE-2013-2133
vendor_redhat·2014-08-06·CVSS 5.5
CVE-2014-3464 [MEDIUM] WS: Incomplete fix for CVE-2013-2133
WS: Incomplete fix for CVE-2013-2133
The EJB invocation handler implementation in Red Hat JBossWS, as used in JBoss Enterprise Application Platform (EAP) 6.2.0 and 6.3.0, does not properly enforce the method level restrictions for outbound messages, which allows remote authenticated users to access otherwise restricted JAX-WS handlers by leveraging permissions to the EJB class. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-2133.
It was found that the fix for CVE-2013-2133 was incomplete: the JAX-WS handlers were being executed for outbound messages even when authorization had failed. A remote attacker who is authorized to access the EJB class, could invoke a JAX-WS handler which they were not authorized to invoke.
Cisco
Cisco IOS XR Internet Control Message Protocol Denial of Service Vulnerability
vendor_cisco·2013-08-13·CVSS 4.6
CVE-2013-3464 [MEDIUM] CWE-20 Cisco IOS XR Internet Control Message Protocol Denial of Service Vulnerability
Cisco IOS XR Internet Control Message Protocol Denial of Service Vulnerability
Cisco IOS XR Software is affected by a denial of service (DoS) vulnerability that could allow an authenticated, local attacker to trigger a reload of the affected device by locally generating certain Internet Control Message Protocol (ICMP) messages.
The vulnerability is due to a combination of Silicon Packet Processor (SPP) buffer corruption and a mutex issue when an extended ping with timeout=0 and a large packet size is terminated with Control-C. An attacker could exploit this vulnerability by sending large ICMP packets from an affected device.
Cisco has confirmed this vulnerability in a security notice; however, software updates are not available.
To exploit this vulnerability, the attacker would need t
No detection rules found.
No public exploits indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3464http://www.securitytracker.com/id/1028914https://exchange.xforce.ibmcloud.com/vulnerabilities/86385http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3464http://www.securitytracker.com/id/1028914https://exchange.xforce.ibmcloud.com/vulnerabilities/86385
2013-08-13
Published