CVE-2005-1020: High severity Cisco IOS vulnerability
Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1020?
CVE-2005-1020 is classified as a high severity vulnerability that allows attackers to cause a denial of service on affected Cisco IOS devices.
How do I fix CVE-2005-1020?
To fix CVE-2005-1020, upgrade to a Cisco IOS version that addresses this vulnerability as outlined in Cisco's security advisories.
What versions of Cisco IOS are affected by CVE-2005-1020?
CVE-2005-1020 affects Cisco IOS versions 12.0 through 12.3, including specific releases such as 12.1xg, 12.0xc, and 12.3xr.
What type of attack is possible with CVE-2005-1020?
CVE-2005-1020 allows a remote attacker to trigger a denial of service, leading to a device reload.
Is there a workaround for CVE-2005-1020?
While upgrading the IOS is the primary mitigation, restricting SSH access may provide a temporary workaround for CVE-2005-1020.