积极预防 及时发现
快速响应 力保恢复
使用基于Engine2的IOS 12.0和line cards的Cisco 12004不能在一个用于...
发布时间:2001-12-06 信息来源:管理员

CNCVE编号:CNCVE-20010867 CVE编号:CAN-2001-0867 安全级别:高 漏洞中文描述: 使用基于Engine2的IOS 12.0和line cards的Cisco 12004不能在一个用于处理发送到路由器中的包的已编译的ACL(Turbo ACL)中处理fragment关键字,这允许远程攻击者通过包洪水来引发拒绝服务。 漏洞英文描述: Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls. 漏洞参考: Reference: CISCO:20011114 Multiple Vulnerabilities in Access Control List Implementation for Cisco 12000 Series Internet Router Reference: URL:http://www.cisco.com/warp/public/707/GSR-ACL-pub.shtml 系统类型: 其他 漏洞类型:设计错误