CVE-2010-0577: High severity Cisco IOS vulnerability
Cisco IOS 12.2 through 12.4, when certain PMTUD, SNAT, or window-size configurations are used, allows remote attackers to cause a denial of service (infinite loop, and device reload or hang) via a TCP segment with crafted options, aka Bug ID CSCsz75186.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0577?
CVE-2010-0577 is classified as a critical vulnerability due to its ability to cause a denial of service.
How do I fix CVE-2010-0577?
To mitigate CVE-2010-0577, you should upgrade your Cisco IOS to a version that addresses this vulnerability.
Which Cisco IOS versions are affected by CVE-2010-0577?
CVE-2010-0577 affects Cisco IOS versions 12.2 through 12.4, mainly when certain PMTUD, SNAT, or window-size configurations are in use.
What type of attack is associated with CVE-2010-0577?
CVE-2010-0577 allows attackers to exploit a vulnerability through crafted TCP segments, leading to an infinite loop and potential device reload or hang.
Is CVE-2010-0577 remotely exploitable?
Yes, CVE-2010-0577 can be exploited remotely, making it particularly concerning for network security.