CVE-1999-0445: Medium severity Cisco IOS vulnerability
In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filters.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Restrict ingress/egress traffic to affected Cisco IOS routers at upstream firewalls or edge filtering devices to prevent potentially unfiltered packets from reaching interfaces running NAT; isolate or place impacted routers behind additional packet filters until Cisco issues a software fix.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0445?
CVE-1999-0445 has been classified as a medium severity vulnerability due to its potential impact on network security.
How do I fix CVE-1999-0445?
To fix CVE-1999-0445, you should upgrade to a non-vulnerable version of Cisco IOS that addresses the NAT filtering issue.
What devices are affected by CVE-1999-0445?
CVE-1999-0445 affects Cisco routers running certain versions of IOS 12.0 with NAT enabled.
What are the risks associated with CVE-1999-0445?
The risks associated with CVE-1999-0445 include unauthorized access to network resources due to improper packet filtering.
How can I check if my Cisco router is vulnerable to CVE-1999-0445?
You can check the version of your Cisco IOS running on your router and compare it against the vulnerable versions listed for CVE-1999-0445.