First published: Wed Feb 14 2007(Updated: )
The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signatures that use regular expressions via fragmented packets.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.3ym | |
Cisco IOS | =12.3yq | |
Cisco IOS | =12.3xr | |
Cisco IOS | =12.4t | |
Cisco IOS | =12.3ya | |
Cisco IOS | =12.3xs | |
Cisco IOS | =12.3xw | |
Cisco IOS | =12.4mr | |
Cisco IOS | =12.3yj | |
Cisco IOS | =12.3t | |
Cisco IOS | =12.3yd | |
Cisco IOS | =12.3yk | |
Cisco IOS | =12.3yt | |
Cisco IOS | =12.3yz | |
Cisco IOS | =12.3yg | |
Cisco IOS | =12.3xy | |
Cisco IOS | =12.4 | |
Cisco IOS | =12.4xa | |
Cisco IOS | =12.3yx | |
Cisco IOS | =12.3xq | |
Cisco IOS | =12.3ys | |
Cisco IOS | =12.3yh | |
Cisco IOS | =12.4xb | |
Cisco IOS | =12.3xx | |
Cisco IOS | =12.3yi |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0917 has a high severity rating due to the potential for remote attackers to bypass crucial IPS signatures.
To address CVE-2007-0917, upgrade the Cisco IOS to a fixed version or apply the recommended patches provided by Cisco.
CVE-2007-0917 affects various Cisco IOS versions, including those from 12.3 and 12.4 series.
Yes, CVE-2007-0917 allows remote attackers to exploit the vulnerability through crafted fragmented packets.
The impact of CVE-2007-0917 is significant as it compromises the ability of the Intrusion Prevention System to detect attacks effectively.