First published: Tue May 13 2008(Updated: )
Unspecified vulnerability in Hitachi GR routers allows remote attackers to cause a denial of service (dropped session) via crafted BGP UPDATE messages, leading to route flapping, possibly a related issue to CVE-2007-6372.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hitachi gr2000 | ||
Hitachi gr2000 | =1b | |
Hitachi gr2000 | =2b | |
Hitachi gr2000 | =2b\+ | |
Hitachi gr2000 | =bh | |
hitachi gr3000 | ||
Hitachi GS4000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2172 has a moderate severity level due to its potential for causing denial of service through crafted BGP UPDATE messages.
To mitigate CVE-2008-2172, ensure that your Hitachi GR routers are updated to the latest firmware version that addresses this vulnerability.
CVE-2008-2172 affects several Hitachi GR router models including GR2000, GR3000, and GR4000 series.
CVE-2008-2172 exploits the handling of BGP UPDATE messages to cause a denial of service by inducing route flapping.
Implementing stringent access controls on BGP ports can serve as a temporary workaround for CVE-2008-2172 while waiting for a firmware update.