First published: Mon Oct 03 2011(Updated: )
Memory leak in the Data-link switching (aka DLSw) feature in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xS before 3.1.3S and 3.2.xS before 3.2.1S, when implemented over Fast Sequence Transport (FST), allows remote attackers to cause a denial of service (memory consumption and device reload or hang) via a crafted IP protocol 91 packet, aka Bug ID CSCth69364.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.1 | |
Cisco IOS | =12.1t | |
Cisco IOS | =12.1xi | |
Cisco IOS | =12.1xj | |
Cisco IOS | =12.1xl | |
Cisco IOS | =12.1xm | |
Cisco IOS | =12.1xp | |
Cisco IOS | =12.1xq | |
Cisco IOS | =12.1xr | |
Cisco IOS | =12.1xs | |
Cisco IOS | =12.1xt | |
Cisco IOS | =12.1xu | |
Cisco IOS | =12.1xv | |
Cisco IOS | =12.1xy | |
Cisco IOS | =12.1ya | |
Cisco IOS | =12.1yb | |
Cisco IOS | =12.1yc | |
Cisco IOS | =12.1yd | |
Cisco IOS | =12.1ye | |
Cisco IOS | =12.1yf | |
Cisco IOS | =12.1yh | |
Cisco IOS | =12.1yi | |
Cisco IOS | =12.2b | |
Cisco IOS | =12.2bw | |
Cisco IOS | =12.2bx | |
Cisco IOS | =12.2by | |
Cisco IOS | =12.2cz | |
Cisco IOS | =12.2dd | |
Cisco IOS | =12.2dx | |
Cisco IOS | =12.2ex | |
Cisco IOS | =12.2ira | |
Cisco IOS | =12.2irb | |
Cisco IOS | =12.2irc | |
Cisco IOS | =12.2ird | |
Cisco IOS | =12.2ire | |
Cisco IOS | =12.2ixa | |
Cisco IOS | =12.2ixb | |
Cisco IOS | =12.2ixc | |
Cisco IOS | =12.2ixd | |
Cisco IOS | =12.2ixe | |
Cisco IOS | =12.2ixf | |
Cisco IOS | =12.2ixg | |
Cisco IOS | =12.2ixh | |
Cisco IOS | =12.2mra | |
Cisco IOS | =12.2mrb | |
Cisco IOS | =12.2sbc | |
Cisco IOS | =12.2sca | |
Cisco IOS | =12.2scb | |
Cisco IOS | =12.2scc | |
Cisco IOS | =12.2scd | |
Cisco IOS | =12.2sg | |
Cisco IOS | =12.2sra | |
Cisco IOS | =12.2srb | |
Cisco IOS | =12.2sre | |
Cisco IOS | =12.2su | |
Cisco IOS | =12.2sv | |
Cisco IOS | =12.2sxa | |
Cisco IOS | =12.2sxb | |
Cisco IOS | =12.2sxd | |
Cisco IOS | =12.2sxe | |
Cisco IOS | =12.2sxf | |
Cisco IOS | =12.2sy | |
Cisco IOS | =12.2sz | |
Cisco IOS | =12.2t | |
Cisco IOS | =12.2tpc | |
Cisco IOS | =12.2xa | |
Cisco IOS | =12.2xb | |
Cisco IOS | =12.2xc | |
Cisco IOS | =12.2xd | |
Cisco IOS | =12.2xg | |
Cisco IOS | =12.2xh | |
Cisco IOS | =12.2xi | |
Cisco IOS | =12.2xj | |
Cisco IOS | =12.2xk | |
Cisco IOS | =12.2xl | |
Cisco IOS | =12.2xm | |
Cisco IOS | =12.2xn | |
Cisco IOS | =12.2xq | |
Cisco IOS | =12.2xs | |
Cisco IOS | =12.2xt | |
Cisco IOS | =12.2xu | |
Cisco IOS | =12.2xv | |
Cisco IOS | =12.2xw | |
Cisco IOS | =12.2ya | |
Cisco IOS | =12.2yb | |
Cisco IOS | =12.2yc | |
Cisco IOS | =12.2yd | |
Cisco IOS | =12.2ye | |
Cisco IOS | =12.2yf | |
Cisco IOS | =12.2yh | |
Cisco IOS | =12.2yj | |
Cisco IOS | =12.2yk | |
Cisco IOS | =12.2yl | |
Cisco IOS | =12.2ym | |
Cisco IOS | =12.2yn | |
Cisco IOS | =12.2yt | |
Cisco IOS | =12.2yu | |
Cisco IOS | =12.2yv | |
Cisco IOS | =12.2yw | |
Cisco IOS | =12.2yx | |
Cisco IOS | =12.2yy | |
Cisco IOS | =12.2yz | |
Cisco IOS | =12.2zc | |
Cisco IOS | =12.2zd | |
Cisco IOS | =12.2ze | |
Cisco IOS | =12.2zf | |
Cisco IOS | =12.2zh | |
Cisco IOS | =12.2zj | |
Cisco IOS | =12.2zl | |
Cisco IOS | =12.2zp | |
Cisco IOS | =12.2zu | |
Cisco IOS | =12.2zy | |
Cisco IOS | =12.2zya | |
Cisco IOS | =12.3 | |
Cisco IOS | =12.3b | |
Cisco IOS | =12.3t | |
Cisco IOS | =12.3tpc | |
Cisco IOS | =12.3va | |
Cisco IOS | =12.3xa | |
Cisco IOS | =12.3xb | |
Cisco IOS | =12.3xc | |
Cisco IOS | =12.3xd | |
Cisco IOS | =12.3xe | |
Cisco IOS | =12.3xf | |
Cisco IOS | =12.3xg | |
Cisco IOS | =12.3xi | |
Cisco IOS | =12.3xj | |
Cisco IOS | =12.3xk | |
Cisco IOS | =12.3xl | |
Cisco IOS | =12.3xq | |
Cisco IOS | =12.3xr | |
Cisco IOS | =12.3xs | |
Cisco IOS | =12.3xu | |
Cisco IOS | =12.3xw | |
Cisco IOS | =12.3xx | |
Cisco IOS | =12.3xy | |
Cisco IOS | =12.3xz | |
Cisco IOS | =12.3ya | |
Cisco IOS | =12.3yd | |
Cisco IOS | =12.3yf | |
Cisco IOS | =12.3yg | |
Cisco IOS | =12.3yh | |
Cisco IOS | =12.3yi | |
Cisco IOS | =12.3yj | |
Cisco IOS | =12.3yk | |
Cisco IOS | =12.3ym | |
Cisco IOS | =12.3yq | |
Cisco IOS | =12.3ys | |
Cisco IOS | =12.3yt | |
Cisco IOS | =12.3yu | |
Cisco IOS | =12.3yx | |
Cisco IOS | =12.3yz | |
Cisco IOS | =12.3za | |
Cisco IOS | =12.4 | |
Cisco IOS | =12.4gc | |
Cisco IOS | =12.4md | |
Cisco IOS | =12.4mda | |
Cisco IOS | =12.4mr | |
Cisco IOS | =12.4mra | |
Cisco IOS | =12.4sw | |
Cisco IOS | =12.4t | |
Cisco IOS | =12.4xa | |
Cisco IOS | =12.4xb | |
Cisco IOS | =12.4xc | |
Cisco IOS | =12.4xd | |
Cisco IOS | =12.4xe | |
Cisco IOS | =12.4xf | |
Cisco IOS | =12.4xg | |
Cisco IOS | =12.4xj | |
Cisco IOS | =12.4xk | |
Cisco IOS | =12.4xl | |
Cisco IOS | =12.4xm | |
Cisco IOS | =12.4xn | |
Cisco IOS | =12.4xp | |
Cisco IOS | =12.4xq | |
Cisco IOS | =12.4xr | |
Cisco IOS | =12.4xt | |
Cisco IOS | =12.4xv | |
Cisco IOS | =12.4xw | |
Cisco IOS | =12.4xy | |
Cisco IOS | =12.4xz | |
Cisco IOS | =12.4ya | |
Cisco IOS | =12.4yb | |
Cisco IOS | =12.4yd | |
Cisco IOS | =12.4ye | |
Cisco IOS | =12.4yg | |
Cisco IOS | =15.0m | |
Cisco IOS | =15.0s | |
Cisco IOS | =15.0xa | |
Cisco IOS | =15.1t | |
Cisco IOS | =15.1xb | |
Cisco IOS XE Software | =3.1.0s | |
Cisco IOS XE Software | =3.1.1s | |
Cisco IOS XE Software | =3.1.2s | |
Cisco IOS XE Software | =3.2.0s |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0945 has a high severity rating as it causes a denial of service due to a memory leak.
To fix CVE-2011-0945, upgrade your Cisco IOS or IOS XE software to the versions that contain the appropriate patches.
CVE-2011-0945 affects Cisco IOS versions 12.1 through 12.4 and 15.0 through 15.1, along with specific versions of IOS XE.
Yes, CVE-2011-0945 can be exploited by remote attackers to exhaust the memory of the affected device.
The impact of CVE-2011-0945 is a denial of service condition where the affected devices may become unresponsive due to memory consumption.