CVE-2002-1222: Buffer Overflow
Published Oct 28, 2002
·Updated
Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote attackers to cause a denial of service (reset) via a long HTTP request.
Affected Software
7 affected components
Cisco CatOS=5.5
Cisco CatOS=6.1\(2\)
Cisco CatOS=7.4
Cisco CatOS=7.3
Cisco CatOS=6.1
Cisco CatOS=5.5\(13a\)
Cisco CatOS=5.4
Remediation
Patch Available
Event History
Oct 28, 2002
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-1222?
CVE-2002-1222 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2002-1222?
To mitigate CVE-2002-1222, upgrade to a version of Cisco CatOS that is not affected by this vulnerability.
3
What types of devices are affected by CVE-2002-1222?
CVE-2002-1222 affects Cisco Catalyst switches running CatOS versions 5.4 through 7.3.
4
Can CVE-2002-1222 be exploited remotely?
Yes, CVE-2002-1222 can be exploited remotely by sending a specially crafted HTTP request.
5
What impact does CVE-2002-1222 have on affected devices?
CVE-2002-1222 can cause affected devices to reset, resulting in a denial of service.