Cisco IOS多协议标签交换(MPLS)畸形报文拒绝服务漏洞

漏洞起因
异常条件处理失败错误
危险等级

 
影响系统
Cisco IOS XE 2.3.1 t
Cisco IOS XE 2.3.1
Cisco IOS XE 2.2.3
Cisco IOS XE 2.2
Cisco IOS XE 2.1
Cisco IOS 12.4YE
Cisco IOS 12.4YD
Cisco IOS 12.4YB
Cisco IOS 12.4YA
Cisco IOS 12.4XZ
Cisco IOS 12.4XY
Cisco IOS 12.4XW
Cisco IOS 12.4XV
Cisco IOS 12.4XT
Cisco IOS 12.4XR
Cisco IOS 12.4XQ
Cisco IOS 12.4XK
Cisco IOS 12.4XJ
Cisco IOS 12.4XE
Cisco IOS 12.4XD
Cisco IOS 12.4XC
Cisco IOS 12.4XA
Cisco IOS 12.4T
Cisco IOS 12.4MR
Cisco IOS 12.4GC
Cisco IOS 12.4
Cisco IOS 12.3ZA
Cisco IOS 12.3YZ
Cisco IOS 12.3YX
Cisco IOS 12.3YU
Cisco IOS 12.3YT
Cisco IOS 12.3YS
Cisco IOS 12.3YK
Cisco IOS 12.3YI
Cisco IOS 12.3YH
Cisco IOS 12.3YG
Cisco IOS 12.3YF
Cisco IOS 12.3XZ
Cisco IOS 12.3XX
Cisco IOS 12.3XW
Cisco IOS 12.3XR
Cisco IOS 12.3XL
Cisco IOS 12.3XJ
Cisco IOS 12.3XI
Cisco IOS 12.3XF
Cisco IOS 12.3XE
Cisco IOS 12.3XD
Cisco IOS 12.3XC
Cisco IOS 12.3XA
Cisco IOS 12.3TPC
Cisco IOS 12.3T
Cisco IOS 12.3JK
Cisco IOS 12.3BW
Cisco IOS 12.3BC
Cisco IOS 12.3B
Cisco IOS 12.3
Cisco IOS 12.2ZYA
Cisco IOS 12.2ZY
Cisco IOS 12.2ZX
Cisco IOS 12.2ZU
Cisco IOS 12.2ZJ
Cisco IOS 12.2ZE
Cisco IOS 12.2ZD
Cisco IOS 12.2ZA
Cisco IOS 12.2YZ
Cisco IOS 12.2YY
Cisco IOS 12.2YX
Cisco IOS 12.2YT
Cisco IOS 12.2YP
Cisco IOS 12.2YN
Cisco IOS 12.2YJ
Cisco IOS 12.2YD
Cisco IOS 12.2XV
Cisco IOS 12.2XU
Cisco IOS 12.2XT
Cisco IOS 12.2XNF
Cisco IOS 12.2XNE
Cisco IOS 12.2XND
Cisco IOS 12.2XNC
Cisco IOS 12.2XNB
Cisco IOS 12.2XNA
Cisco IOS 12.2XN
Cisco IOS 12.2XL
Cisco IOS 12.2XK
Cisco IOS 12.2XG
Cisco IOS 12.2XF
Cisco IOS 12.2XB
Cisco IOS 12.2XA
Cisco IOS 12.2TPC
Cisco IOS 12.2T
Cisco IOS 12.2SZ
Cisco IOS 12.2SY
Cisco IOS 12.2SXI
Cisco IOS 12.2SXH
Cisco IOS 12.2SXF
Cisco IOS 12.2SXE
Cisco IOS 12.2SXD
Cisco IOS 12.2SXB
Cisco IOS 12.2SXA
Cisco IOS 12.2SX
Cisco IOS 12.2SW
Cisco IOS 12.2SVE
Cisco IOS 12.2SVD
Cisco IOS 12.2SVC
Cisco IOS 12.2SVA
Cisco IOS 12.2SV
Cisco IOS 12.2SU
Cisco IOS 12.2SRD
Cisco IOS 12.2SRC
Cisco IOS 12.2SRB
Cisco IOS 12.2SRA
Cisco IOS 12.2SO
Cisco IOS 12.2SG
Cisco IOS 12.2SEG
Cisco IOS 12.2SEE
Cisco IOS 12.2SED
Cisco IOS 12.2SE
Cisco IOS 12.2SCB
Cisco IOS 12.2SCA
Cisco IOS 12.2SBC
Cisco IOS 12.2SB
Cisco IOS 12.2S
Cisco IOS 12.2MC
Cisco IOS 12.2IXH
Cisco IOS 12.2IXG
Cisco IOS 12.2IXF
Cisco IOS 12.2IXE
Cisco IOS 12.2IXD
Cisco IOS 12.2IXC
Cisco IOS 12.2IXB
Cisco IOS 12.2IXA
Cisco IOS 12.2IRD
Cisco IOS 12.2IRC
Cisco IOS 12.2IRB
Cisco IOS 12.2IRA
Cisco IOS 12.2EY
Cisco IOS 12.2EX
Cisco IOS 12.2DX
Cisco IOS 12.2DD
Cisco IOS 12.2CY
Cisco IOS 12.2CX
Cisco IOS 12.2BZ
Cisco IOS 12.2BY
Cisco IOS 12.2BX
Cisco IOS 12.2BW
Cisco IOS 12.2BC
Cisco IOS 12.2B
Cisco IOS 12.1YE
Cisco IOS 12.1YD
Cisco IOS 12.1YB
Cisco IOS 12.1XV
Cisco IOS 12.1EY
Cisco IOS 12.1EX
Cisco IOS 12.1EO
Cisco IOS 12.1EC
Cisco IOS 12.1EB
Cisco IOS 12.1EA
Cisco IOS 12.1E
Cisco IOS 12.1AX
Cisco IOS 12.0SZ
Cisco IOS 12.0SY
Cisco IOS 12.0SX
Cisco IOS 12.0ST
Cisco IOS 12.0SL
Cisco IOS 12.0S
 
不受影响系统
Cisco IOS XE 2.3.2
Cisco IOS 15.0M
Cisco IOS 12.4XN
Cisco IOS 12.4XB
Cisco IOS 12.4(25c)
Cisco IOS 12.4(22)YE2
Cisco IOS 12.4(22)XR3
Cisco IOS 12.4(20)MR2
Cisco IOS 12.4(15)T10
Cisco IOS 12.3(8)JK1
Cisco IOS 12.3(7)XJ2
Cisco IOS 12.3(7)XI11
Cisco IOS 12.3(4)TPC11a
Cisco IOS 12.3(2)XA7
Cisco IOS 12.3(2)XA3
Cisco IOS 12.3(2)JK3
Cisco IOS 12.3(14)YX10
Cisco IOS 12.3(14)YU
Cisco IOS 12.3(11)YF1
Cisco IOS 12.2(8)YP
Cisco IOS 12.2(8)YN1
Cisco IOS 12.2(8)YJ1
Cisco IOS 12.2(8)TPC10a
Cisco IOS 12.2(8)BY
Cisco IOS 12.2(50)SE4
Cisco IOS 12.2(44)EX
Cisco IOS 12.2(40)SG
Cisco IOS 12.2(37)EY
Cisco IOS 12.2(37)EX
Cisco IOS 12.2(33)XN1
Cisco IOS 12.2(33)SXI2a
Cisco IOS 12.2(33)SXI2
Cisco IOS 12.2(33)SXH6
Cisco IOS 12.2(33)SRD3
Cisco IOS 12.2(33)SRC5
Cisco IOS 12.2(33)SCC1
Cisco IOS 12.2(33)SCB6
Cisco IOS 12.2(33)SB8
Cisco IOS 12.2(33)IRE
Cisco IOS 12.2(31)SG1
Cisco IOS 12.2(31)SB18
Cisco IOS 12.2(30)S
Cisco IOS 12.2(25)SW12
Cisco IOS 12.2(25)SEG4
Cisco IOS 12.2(18)SXF17a
Cisco IOS 12.2(18)SV2
Cisco IOS 12.2(1)XA
Cisco IOS 12.2
Cisco IOS 12.1(7a)EY3
Cisco IOS 12.1(7a)E1a
Cisco IOS 12.1(7)EC
Cisco IOS 12.1(6)EX
Cisco IOS 12.1(5)YE1
Cisco IOS 12.1(5)XV1
Cisco IOS 12.1(22)EA14
Cisco IOS 12.1(19)EO6
Cisco IOS 12.1(11)AX
Cisco IOS 12.0(9)ST
Cisco IOS 12.0(33)S6
Cisco IOS 12.0(32)SY9b
Cisco IOS 12.0(32)SY11
Cisco IOS 12.0(32)S15
Cisco IOS 12.0(14)SL1
 
危害
远程攻击者可以利用漏洞使设备重载。
 
攻击所需条件
攻击者必须访问使用了多协议标签交换(MPLS)和支持标签分发协议的Cisco IOS。
 
漏洞信息
Cisco IOS是一款流行的Internet操作系统。
如果运行Cisco IOS软件的设备配置了多协议标签交换(MPLS)和支持标签分发协议(LDP),远程攻击者可以利用漏洞发送畸形LDP UDP报文使设备重载。
特殊构建的LDP报文可以以单播或多播的UDP报文形式,在设备上任意IP地址监听的UDP 646端口上接收到。
 
测试方法
 
厂商解决方案
用户可参考如下供应商提供的安全公告获得补丁信息:
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b20ee2.shtml#@ID
 
漏洞提供者
Cisco

发表评论?

0 条评论。

发表评论