First published: Wed Jul 21 2004(Updated: )
IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.2\(14\)sy | |
Cisco IOS | =12.2sxa | |
Cisco IOS | =12.2\(14\)za2 | |
Cisco IOS | =12.2sxb | |
Cisco IOS | =12.2za | |
Cisco IOS | =12.2sy | |
Cisco IOS | =12.2\(14\)za | |
Cisco IOS | =12.2\(17a\)sxa |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0710 is considered to have a high severity due to its ability to cause denial of service on affected devices.
To fix CVE-2004-0710, update your Cisco IOS software to a version that is not vulnerable, such as 12.2(17b)SXA or later.
CVE-2004-0710 affects Cisco Catalyst 6500 Series Switch and Cisco 7600 Series Internet Routers running specific vulnerable versions of Cisco IOS.
Yes, CVE-2004-0710 can be exploited remotely by sending malformed packets to the IP Security VPN Services Module.
The impact of CVE-2004-0710 includes potential device crashes and reloads, leading to service disruptions in your network.