First published: Thu Mar 27 2008(Updated: )
Cisco IOS 12.1, 12.2, 12.3, and 12.4, with IPv4 UDP services and the IPv6 protocol enabled, allows remote attackers to cause a denial of service (device crash and possible blocked interface) via a crafted IPv6 packet to the device.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.3 | |
Cisco IOS | =12.1 | |
Cisco IOS | =12.4 | |
Cisco IOS | =12.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1153 has a severity rating that indicates it can lead to denial of service through device crashes.
To fix CVE-2008-1153, it is recommended to upgrade to a non-vulnerable version of Cisco IOS.
Cisco IOS versions 12.1, 12.2, 12.3, and 12.4 with IPv4 UDP and IPv6 enabled are affected by CVE-2008-1153.
Yes, CVE-2008-1153 can be exploited remotely using a specially crafted IPv6 packet.
The consequences of CVE-2008-1153 include device crashes and potentially blocked interfaces.