Cisco IOS Firewall Feature set, aka Context Based Access Control (CBAC) or Cisco Secure Integrated Software, for IOS 11.2P through 12.2T does not properly check the IP protocol type, which could allow remote attackers to bypass access control lists.
References
Link | Resource |
---|---|
http://www.cisco.com/warp/public/707/IOS-cbac-dynacl-pub.shtml | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/362483 | US Government Resource |
http://www.osvdb.org/808 | |
http://www.securityfocus.com/bid/3588 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7614 | |
http://www.cisco.com/warp/public/707/IOS-cbac-dynacl-pub.shtml | Patch Vendor Advisory |
http://www.kb.cert.org/vuls/id/362483 | US Government Resource |
http://www.osvdb.org/808 | |
http://www.securityfocus.com/bid/3588 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7614 |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.cisco.com/warp/public/707/IOS-cbac-dynacl-pub.shtml - Patch, Vendor Advisory | |
References | () http://www.kb.cert.org/vuls/id/362483 - US Government Resource | |
References | () http://www.osvdb.org/808 - | |
References | () http://www.securityfocus.com/bid/3588 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/7614 - |
Information
Published : 2001-11-28 05:00
Updated : 2024-11-20 23:36
NVD link : CVE-2001-0929
Mitre link : CVE-2001-0929
CVE.ORG link : CVE-2001-0929
JSON object : View
Products Affected
cisco
- ios
CWE