CVE-2001-0650: Medium severity Cisco IOS vulnerability
Published Sep 20, 2001
·Updated
Cisco devices IOS 12.0 and earlier allow a remote attacker to cause a crash, or bad route updates, via malformed BGP updates with unrecognized transitive attribute.
Affected Software
4 affected components
Cisco IOS<=12.0
Cisco IOS=11.2
Cisco IOS=11.3
Cisco IOS=12.0
Remediation
Patch Available
Event History
Sep 20, 2001
CVE Published
04:00 AM
Mar 9, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0650?
CVE-2001-0650 is classified as a critical vulnerability due to the potential for remote attackers to crash affected Cisco devices.
2
How do I fix CVE-2001-0650?
To mitigate CVE-2001-0650, upgrade your Cisco IOS to a version later than 12.0 that does not contain this vulnerability.
3
Which Cisco IOS versions are affected by CVE-2001-0650?
CVE-2001-0650 affects Cisco IOS versions 11.2, 11.3, and 12.0.
4
Can CVE-2001-0650 be exploited remotely?
Yes, CVE-2001-0650 can be exploited remotely by attackers sending malformed BGP updates.
5
What are the consequences of CVE-2001-0650?
Exploitation of CVE-2001-0650 can lead to denial of service or incorrect routing information being propagated.