First published: Thu Sep 20 2001(Updated: )
Cisco devices IOS 12.0 and earlier allow a remote attacker to cause a crash, or bad route updates, via malformed BGP updates with unrecognized transitive attribute.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =11.3 | |
Cisco IOS | <=12.0 | |
Cisco IOS | =11.2 | |
Cisco IOS | =12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0650 is classified as a critical vulnerability due to the potential for remote attackers to crash affected Cisco devices.
To mitigate CVE-2001-0650, upgrade your Cisco IOS to a version later than 12.0 that does not contain this vulnerability.
CVE-2001-0650 affects Cisco IOS versions 11.2, 11.3, and 12.0.
Yes, CVE-2001-0650 can be exploited remotely by attackers sending malformed BGP updates.
Exploitation of CVE-2001-0650 can lead to denial of service or incorrect routing information being propagated.