CVE-2009-0635

Memory leak in the Cisco Tunneling Control Protocol (cTCP) encapsulation feature in Cisco IOS 12.4, when an Easy VPN (aka EZVPN) server is enabled, allows remote attackers to cause a denial of service (memory consumption and device crash) via a sequence of TCP packets.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:cisco:ios:12.4t:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4xz:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:12.4ya:*:*:*:*:*:*:*

History

21 Nov 2024, 01:00

Type Values Removed Values Added
References () http://secunia.com/advisories/34438 - Vendor Advisory () http://secunia.com/advisories/34438 - Vendor Advisory
References () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90459.shtml - Patch, Vendor Advisory () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90459.shtml - Patch, Vendor Advisory
References () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90469.shtml - Patch, Vendor Advisory () http://www.cisco.com/en/US/products/products_security_advisory09186a0080a90469.shtml - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/34246 - () http://www.securityfocus.com/bid/34246 -
References () http://www.securitytracker.com/id?1021895 - () http://www.securitytracker.com/id?1021895 -
References () http://www.vupen.com/english/advisories/2009/0851 - Vendor Advisory () http://www.vupen.com/english/advisories/2009/0851 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/49417 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/49417 -

Information

Published : 2009-03-27 16:30

Updated : 2024-11-21 01:00


NVD link : CVE-2009-0635

Mitre link : CVE-2009-0635

CVE.ORG link : CVE-2009-0635


JSON object : View

Products Affected

cisco

  • ios
CWE
CWE-399

Resource Management Errors