CVE-2002-2053: Medium severity Cisco IOS vulnerability
The design of the Hot Standby Routing Protocol (HSRP), as implemented on Cisco IOS 12.1, when using IRPAS, allows remote attackers to cause a denial of service (CPU consumption) via a router with the same IP address as the interface on which HSRP is running, which causes a loop.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-2053?
CVE-2002-2053 has a high severity rating due to its potential to cause denial of service by consuming CPU resources.
How do I fix CVE-2002-2053?
To fix CVE-2002-2053, ensure that the router does not have the same IP address as the HSRP interface and update to a secure version of Cisco IOS.
What systems are affected by CVE-2002-2053?
CVE-2002-2053 primarily affects Cisco IOS version 12.1 when using the Hot Standby Routing Protocol.
What type of attack is exploited in CVE-2002-2053?
CVE-2002-2053 is exploited through a denial of service attack that targets CPU consumption on affected routers.
Is there a workaround for CVE-2002-2053?
A possible workaround for CVE-2002-2053 is to configure network devices to avoid IP address conflicts with the HSRP interface.