First published: Fri Sep 26 2008(Updated: )
Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when the L2TP mgmt daemon process is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted L2TP packet.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.4t | |
Cisco IOS | =12.4xj | |
Cisco IOS | =12.4mr | |
Cisco IOS | =12.2srb | |
Cisco IOS | =12.2sg | |
Cisco IOS | =12.4xv | |
Cisco IOS | =12.4xw | |
Cisco IOS | =12.2se | |
Cisco IOS | =12.4sw |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3813 is classified as a high severity vulnerability due to its potential to cause denial of service attacks.
To mitigate CVE-2008-3813, it is recommended to disable the L2TP management daemon process on affected Cisco IOS versions.
CVE-2008-3813 affects Cisco IOS 12.2 and 12.4, specifically versions 12.2srb, 12.2sg, 12.2se, and several versions of 12.4.
Exploiting CVE-2008-3813 could allow remote attackers to reload the device, leading to a denial of service.
Currently, Cisco recommends disabling the affected service as there may not be a dedicated patch for CVE-2008-3813.