CVE-2011-3280: High severity cisco ios xe vulnerability
Memory leak in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (memory consumption or device reload) by sending crafted SIP packets to UDP port 5060, aka Bug ID CSCtj04672.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3280?
CVE-2011-3280 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2011-3280?
To fix CVE-2011-3280, upgrade the affected Cisco IOS or IOS XE software to a version that contains the necessary security patches.
What devices are affected by CVE-2011-3280?
CVE-2011-3280 affects multiple versions of Cisco IOS, including versions 12.1 through 12.4 and 15.0 through 15.1, as well as IOS XE 3.1.xSG.
What type of attacks does CVE-2011-3280 allow remote attackers to perform?
CVE-2011-3280 allows remote attackers to conduct denial-of-service attacks by sending crafted SIP packets to the device's UDP port 5060.
Is there a workaround for CVE-2011-3280?
A possible workaround for CVE-2011-3280 involves implementing access control lists to filter and restrict traffic on UDP port 5060.