CVE-2002-1024
Last modified
CVE-2002-1024 is a vulnerability of currently unknown severity. Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).. EPSS estimates a 3.30% chance of exploitation in the next 30 days.
Description
Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 12.0s |
| Cisco | Ios | 12.0sp |
| Cisco | Ios | 12.0st |
| Cisco | Ios | 12.0xb |
| Cisco | Ios | 12.0xm |
| Cisco | Ios | 12.0xv |
| Cisco | Ios | 12.1\(1\)ex |
| Cisco | Ios | 12.1\(5c\)ex |
| Cisco | Ios | 12.1\(8a\)ex |
| Cisco | Ios | 12.1\(9\)ex |
| Cisco | Ios | 12.1e |
| Cisco | Ios | 12.1ec |
| Cisco | Ios | 12.1t |
| Cisco | Ios | 12.1xb |
| Cisco | Ios | 12.1xc |
| Cisco | Ios | 12.1xf |
| Cisco | Ios | 12.1xg |
| Cisco | Ios | 12.1xh |
| Cisco | Ios | 12.1xi |
| Cisco | Ios | 12.1xj |
| Cisco | Ios | 12.1xl |
| Cisco | Ios | 12.1xm |
| Cisco | Ios | 12.1xp |
| Cisco | Ios | 12.1xq |
| Cisco | Ios | 12.1xt |
| Cisco | Ios | 12.1xu |
| Cisco | Ios | 12.1yb |
| Cisco | Ios | 12.1yc |
| Cisco | Ios | 12.1yd |
| Cisco | Ios | 12.1ye |
| Cisco | Ios | 12.1yf |
| Cisco | Ios | 12.1yi |
| Cisco | Ios | 12.2 |
| Cisco | Ios | 12.2b |
| Cisco | Ios | 12.2bc |
| Cisco | Ios | 12.2da |
| Cisco | Ios | 12.2dd |
| Cisco | Ios | 12.2s |
| Cisco | Ios | 12.2t |
| Cisco | Ios | 12.2xa |
| Cisco | Ios | 12.2xb |
| Cisco | Ios | 12.2xd |
| Cisco | Ios | 12.2xe |
| Cisco | Ios | 12.2xf |
| Cisco | Ios | 12.2xg |
| Cisco | Ios | 12.2xh |
| Cisco | Ios | 12.2xi |
| Cisco | Ios | 12.2xj |
| Cisco | Ios | 12.2xk |
| Cisco | Ios | 12.2xl |
Showing 50 of 102 affected configurations. See NVD for the full list.
References
- http://www.iss.net/security_center/static/9437.phpPatch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/290140US Government Resource
- http://www.securityfocus.com/bid/5114Patch, Vendor Advisory
- http://www.iss.net/security_center/static/9437.phpPatch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/290140US Government Resource
- http://www.securityfocus.com/bid/5114Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-1024?
How severe is CVE-2002-1024?
How do I fix CVE-2002-1024?
Are you affected by CVE-2002-1024?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
