CVE-2005-4436: High severity Extended Interior Gateway Routing Protocol Extended Interior Gateway Routing Protocol vulnerability
Published Dec 21, 2005
·Updated
Extended Interior Gateway Routing Protocol (EIGRP) 1.2, as implemented in Cisco IOS after 12.3(2), 12.3(3)B, and 12.3(2)T and other products, allows remote attackers to cause a denial of service by sending a "spoofed neighbor announcement" with (1) mismatched k values or (2) "goodbye message" Type-Length-Value (TLV).
Affected Software
2 affected components
Extended Interior Gateway Routing Protocol Extended Interior Gateway Routing Protocol=1.2
Extended Interior Gateway Routing Protocol Extended Interior Gateway Routing Protocol=1.2
Event History
Dec 21, 2005
CVE Published
01:03 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
Is CVE-2005-4436 easily exploitable?
Yes, CVE-2005-4436 is considered easily exploitable due to the nature of the required spoofed messages.