CVE-1999-0063: Medium severity Cisco IOS vulnerability
Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable or stop listening on the syslog UDP port (UDP/514) on affected Cisco IOS devices to prevent crashes caused by malicious UDP packets to the syslog port.
Cisco IOS (syslog/remote logging) syslog UDP reception = disabled - Compensating control
Block or filter UDP traffic to the syslog port (UDP/514) from untrusted networks using perimeter firewalls or device ACLs to prevent malicious packets reaching Cisco IOS syslog listeners.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0063?
CVE-1999-0063 is considered a critical vulnerability that can crash affected Cisco IOS systems.
How do I fix CVE-1999-0063?
To fix CVE-1999-0063, update your Cisco IOS to a version that addresses this vulnerability.
What systems are affected by CVE-1999-0063?
CVE-1999-0063 affects various versions of Cisco IOS including 12.0, 11.3aa, and 11.3db.
What type of attack exploits CVE-1999-0063?
CVE-1999-0063 can be exploited through malicious UDP packets sent to the syslog port.
Is there a workaround for CVE-1999-0063?
To mitigate CVE-1999-0063, consider disabling the syslog service or implementing access control measures.