CVE-2008-3805
Last modified
CVE-2008-3805 is a vulnerability of currently unknown severity. Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3806.. EPSS estimates a 3.30% chance of exploitation in the next 30 days.
Description
Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3806.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 12.2b |
| Cisco | Ios | 12.2ca |
| Cisco | Ios | 12.2l |
| Cisco | Ios | 12.2rc |
| Cisco | Ios | 12.2s |
| Cisco | Ios | 12.2t |
| Cisco | Ios | 12.2zx |
| Cisco | Ios | 12.3bc |
| Cisco | Ios | 12.3t |
| Cisco | Ios | 12.3xi |
| Cisco | Ios | 12.4 |
References
- http://secunia.com/advisories/31990Third Party Advisory
- http://www.securitytracker.com/id?1020935Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2008/2670Permissions Required
- http://secunia.com/advisories/31990Third Party Advisory
- http://www.securitytracker.com/id?1020935Broken Link, Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2008/2670Permissions Required
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-3805?
How severe is CVE-2008-3805?
How do I fix CVE-2008-3805?
Are you affected by CVE-2008-3805?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
