CVE-1999-0193: Medium severity Ascend Cascadeview Ux vulnerability

Published Dec 1, 1997
·
Updated

Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.

Affected Software

1 affected component
Ascend Cascadeview Ux=1.0

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    On the affected router (or on an immediate upstream device), configure an access-control list or packet-filter rule to drop TCP packets that contain zero-length or otherwise malformed TCP options to prevent remote-triggered reboots.

    Ascend Cascadeview Ux router TCP option handling / ACL = drop TCP segments with zero-length TCP options
  2. Compensating control

    Deploy network-level filtering (perimeter firewall/IDS/WAF) to detect and drop TCP segments with zero-length TCP options and/or create IDS signatures to alert on such packets; additionally, restrict inbound traffic to the affected routers to trusted IPs where practical.

Event History

Dec 1, 1997
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
DescriptionSeverityAffected Software
Feb 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-1999-0193?

CVE-1999-0193 has a high severity rating due to its ability to cause denial of service on affected routers.

2

How do I fix CVE-1999-0193?

Fixing CVE-1999-0193 involves updating the affected Ascend and 3com router firmware to a version that addresses this vulnerability.

3

What systems are affected by CVE-1999-0193?

CVE-1999-0193 specifically affects Ascend Cascadeview UX version 1.0 routers.

4

What happens if CVE-1999-0193 is exploited?

Exploitation of CVE-1999-0193 can lead to the affected router being rebooted, resulting in network downtime.

5

Is CVE-1999-0193 a widespread issue?

While CVE-1999-0193 primarily affects older router models, it remains a concern for systems still using vulnerable configurations.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203