CVE-2014-0720: Input Validation
Published Feb 22, 2014
·Updated
Cisco IPS Software 7.1 before 7.1(8)E4 and 7.2 before 7.2(2)E4 allows remote attackers to cause a denial of service (Analysis Engine process outage) via a flood of jumbo frames, aka Bug ID CSCuh94944.
Affected Software
8 affected components
Cisco Ips Sensor Software<=7.1\(1\)e4
Cisco Ips Sensor Software=7.1\(2\)e4
Cisco Ips Sensor Software=7.1\(3\)e4
Cisco Ips Sensor Software=7.1\(4\)e4
Cisco Ips Sensor Software=7.1\(6\)e4
Cisco Ips Sensor Software=7.1\(7\)e4
Cisco Ips Sensor Software=7.1\(8\)e4
Cisco Ips Sensor Software=7.2\(1\)e4
Event History
Feb 22, 2014
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0720?
CVE-2014-0720 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2014-0720?
To fix CVE-2014-0720, upgrade your Cisco IPS Software to version 7.1(8)E4 or 7.2(2)E4 or later.
3
What are the affected versions in CVE-2014-0720?
CVE-2014-0720 affects Cisco IPS Software versions prior to 7.1(8)E4 and 7.2(2)E4.
4
What type of attack is associated with CVE-2014-0720?
CVE-2014-0720 is associated with remote denial of service attacks using a flood of jumbo frames.
5
Is CVE-2014-0720 a vulnerability in Cisco IPS Sensor Software?
Yes, CVE-2014-0720 is a vulnerability found in Cisco IPS Sensor Software versions before the specified updates.