Boletines de Vulnerabilidades

Cisco IOS Software Internet Key Exchange Memory Leak Vulnerability


Información sobre el sistema

   
Software afectado Cisco

Descripción

A vulnerability in the Internet Key Exchange (IKE) protocol of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak that could lead to a device reload.The vulnerability is due to incorrect handling of malformed IKE packets by the affected software. An attacker could exploit this vulnerability by sending crafted IKE packets to a device configured with features that leverage IKE version 1 (IKEv1).Although IKEv1 is automatically

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130925-ike?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20IOS%20Software%20Internet%20Key%20Exchange%20Memory%20Leak%20Vulnerabi

Identificadores estándar

Propiedad Valor
CVE CVE-2013-5473.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2013-09-26

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT