CVE-2006-0340: Input Validation
Unspecified vulnerability in Stack Group Bidding Protocol (SGBP) support in Cisco IOS 12.0 through 12.4 running on various Cisco products, when SGBP is enabled, allows remote attackers on the local network to cause a denial of service (device hang and network traffic loss) via a crafted UDP packet to port 9900.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0340?
CVE-2006-0340 has a severity level that can lead to denial of service, affecting the availability of the affected devices.
How do I fix CVE-2006-0340?
To fix CVE-2006-0340, disable the Stack Group Bidding Protocol if it is not necessary for your network operation.
Which Cisco IOS versions are affected by CVE-2006-0340?
CVE-2006-0340 affects Cisco IOS versions from 12.0 to 12.4 when the Stack Group Bidding Protocol is enabled.
What are the potential impacts of CVE-2006-0340?
The potential impacts of CVE-2006-0340 include device hangs and loss of network traffic due to crafted UDP packets sent by remote attackers.
Is CVE-2006-0340 remote or local attack vector?
CVE-2006-0340 can be exploited by remote attackers over the local network.