First published: Thu Aug 09 2007(Updated: )
Unspecified vulnerability in Cisco IOS and Cisco IOS XR 12.x up to 12.3, including some versions before 12.3(15) and 12.3(14)T, allows remote attackers to obtain sensitive information (partial packet contents) or cause a denial of service (router or component crash) via crafted IPv6 packets with a Type 0 routing header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.3 | |
Cisco IOS | =12.1 | |
Cisco IOS | =12.2 | |
Cisco IOS | =12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4285 is classified as a high severity vulnerability due to its potential to allow remote attackers to obtain sensitive information or cause denial of service.
To mitigate CVE-2007-4285, upgrade to a patched version of Cisco IOS or IOS XR that addresses this vulnerability.
CVE-2007-4285 affects Cisco IOS versions 12.0, 12.1, 12.2, and 12.3 prior to specific patches.
CVE-2007-4285 can lead to a denial of service, causing routers or network components to crash and disrupting network operations.
There are no known effective workarounds for CVE-2007-4285, and updating the affected software is the recommended approach.