CVE Vulnerabilities

CVE-2009-2871

Published: Sep 28, 2009 | Modified: Oct 01, 2009
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when SSLVPN sessions, SSH sessions, or IKE encrypted nonces are enabled, allows remote attackers to cause a denial of service (device reload) via a crafted encrypted packet, aka Bug ID CSCsq24002.

Affected Software

Name Vendor Start Version End Version
Ios Cisco 12.2xna (including) 12.2xna (including)
Ios Cisco 12.2xnb (including) 12.2xnb (including)
Ios Cisco 12.2xnc (including) 12.2xnc (including)
Ios Cisco 12.2xnd (including) 12.2xnd (including)
Ios Cisco 12.4md (including) 12.4md (including)
Ios Cisco 12.4mr (including) 12.4mr (including)
Ios Cisco 12.4sw (including) 12.4sw (including)
Ios Cisco 12.4t (including) 12.4t (including)
Ios Cisco 12.4xf (including) 12.4xf (including)
Ios Cisco 12.4xj (including) 12.4xj (including)
Ios Cisco 12.4xk (including) 12.4xk (including)
Ios Cisco 12.4xq (including) 12.4xq (including)
Ios Cisco 12.4xr (including) 12.4xr (including)
Ios Cisco 12.4xv (including) 12.4xv (including)
Ios Cisco 12.4xw (including) 12.4xw (including)
Ios Cisco 12.4xy (including) 12.4xy (including)
Ios Cisco 12.4xz (including) 12.4xz (including)

References