A vulnerability in the forwarding information base (FIB) code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause inconsistency between the routing information base (RIB) and the FIB, resulting in a denial of service (DoS) condition. The vulnerability is due to incorrect processing of extremely long routing updates. An attacker could exploit this vulnerability by sending a large routing update. A successful exploit could allow the attacker to trigger inconsistency between the FIB and the RIB, resulting in a DoS condition. Cisco Bug IDs: CSCus84718.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/102975 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1040344 | Third Party Advisory VDB Entry |
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180207-iosxr | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2018-02-08 07:29
Updated : 2024-02-04 19:46
NVD link : CVE-2018-0132
Mitre link : CVE-2018-0132
CVE.ORG link : CVE-2018-0132
JSON object : View
Products Affected
cisco
- carrier_routing_system
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer