CVE-2011-3277: High severity Cisco IOS XE vulnerability
Unspecified vulnerability in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (device reload) by sending crafted H.323 packets to TCP port 1720, aka Bug ID CSCth11006.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3277?
CVE-2011-3277 is classified as a denial-of-service vulnerability affecting Cisco IOS and IOS XE.
How do I fix CVE-2011-3277?
To mitigate CVE-2011-3277, ensure that your Cisco IOS or IOS XE software is updated to a version that includes the relevant security patches.
Which versions of Cisco IOS are affected by CVE-2011-3277?
CVE-2011-3277 affects Cisco IOS versions 12.1 through 12.4 and 15.0 through 15.1, as well as IOS XE 3.1.xSG.
Is there a workaround for CVE-2011-3277?
Disabling H.323 or blocking TCP port 1720 can serve as a temporary workaround to mitigate the vulnerability in CVE-2011-3277.
Can CVE-2011-3277 lead to device exploitation?
Yes, CVE-2011-3277 allows remote attackers to exploit the vulnerability by sending crafted packets, potentially leading to device reloads.