CVE-2018-0132

A vulnerability in the forwarding information base (FIB) code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause inconsistency between the routing information base (RIB) and the FIB, resulting in a denial of service (DoS) condition. The vulnerability is due to incorrect processing of extremely long routing updates. An attacker could exploit this vulnerability by sending a large routing update. A successful exploit could allow the attacker to trigger inconsistency between the FIB and the RIB, resulting in a DoS condition. Cisco Bug IDs: CSCus84718.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:carrier_routing_system:5.3.0.rout:*:*:*:*:*:*:*

History

21 Nov 2024, 03:37

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102975 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102975 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1040344 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1040344 - Third Party Advisory, VDB Entry
References () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180207-iosxr - Vendor Advisory () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180207-iosxr - Vendor Advisory

Information

Published : 2018-02-08 07:29

Updated : 2024-11-21 03:37


NVD link : CVE-2018-0132

Mitre link : CVE-2018-0132

CVE.ORG link : CVE-2018-0132


JSON object : View

Products Affected

cisco

  • carrier_routing_system
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer