CVE-2005-2451

UnknownEPSS 1.41%

Last modified

CVE-2005-2451 is a vulnerability of currently unknown severity. Cisco IOS 12.0 through 12.4 and IOS XR before 3.2, with IPv6 enabled, allows remote attackers on a local network segment to cause a denial of service (device reload) and possibly execute arbitrary code via a crafted IPv6 packet.. EPSS estimates a 1.41% chance of exploitation in the next 30 days.

Description

Cisco IOS 12.0 through 12.4 and IOS XR before 3.2, with IPv6 enabled, allows remote attackers on a local network segment to cause a denial of service (device reload) and possibly execute arbitrary code via a crafted IPv6 packet.

Metrics

EPSS Probability
1.41%

69.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

VendorProductVersions
CiscoIos12.0s
CiscoIos12.0sl
CiscoIos12.0st
CiscoIos12.0sy
CiscoIos12.1xu
CiscoIos12.1xv
CiscoIos12.1yb
CiscoIos12.1yc
CiscoIos12.1yd
CiscoIos12.1ye
CiscoIos12.1yf
CiscoIos12.1yh
CiscoIos12.1yi
CiscoIos12.2b
CiscoIos12.2bc
CiscoIos12.2bw
CiscoIos12.2bx
CiscoIos12.2by
CiscoIos12.2bz
CiscoIos12.2cx
CiscoIos12.2cy
CiscoIos12.2dd
CiscoIos12.2dx
CiscoIos12.2eu
CiscoIos12.2ew
CiscoIos12.2ewa
CiscoIos12.2ez
CiscoIos12.2ja
CiscoIos12.2jk
CiscoIos12.2mb
CiscoIos12.2mc
CiscoIos12.2mx
CiscoIos12.2s
CiscoIos12.2seb
CiscoIos12.2sec
CiscoIos12.2so
CiscoIos12.2su
CiscoIos12.2sv
CiscoIos12.2sw
CiscoIos12.2sx
CiscoIos12.2sxa
CiscoIos12.2sxb
CiscoIos12.2sxd
CiscoIos12.2sxe
CiscoIos12.2sy
CiscoIos12.2sz
CiscoIos12.2t
CiscoIos12.2xa
CiscoIos12.2xb
CiscoIos12.2xc

Showing 50 of 148 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2005-2451?
Cisco IOS 12.0 through 12.4 and IOS XR before 3.2, with IPv6 enabled, allows remote attackers on a local network segment to cause a denial of service (device reload) and possibly execute arbitrary code via a crafted IPv6 packet.
How severe is CVE-2005-2451?
Severity scoring for CVE-2005-2451 is pending analysis. The EPSS model estimates a 1.41% probability of exploitation in the next 30 days.
How do I fix CVE-2005-2451?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2005-2451?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST