nanog mailing list archives

Re: New Cisco Vulnerability


From: "Petri Helenius" <pete () he iki fi>
Date: Wed, 16 Jul 2003 22:50:39 +0300

It supposedly requires 75 packets which is the default amount of slots
in the "process switched" input queue on an interface. There have been
packets stuck in the input queue in previous occasions but I suspect
this is readily exploitable remotely.

Pete

  ----- Original Message ----- 
  From: Vincent J. Bono 
  To: nanog () merit edu 
  Sent: Wednesday, July 16, 2003 10:17 PM
  Subject: New Cisco Vulnerability


  Hello All,

  There seem to be rumors going around that there is a new major Cisco vulnerability but only the major backbones are 
being given fixes right now.

  Something about packets malformed in a certain manner cause the router to wedge.

  Can anyne shed any light on or off list?

  -vb






Current thread: