Cisco IOS IPv6 dual-stack denial of service
| cisco-ios-ipv6-dualstack-dos (41475) |
Description:
Cisco IOS is vulnerable to a denial of service, caused by an error when IPv6 is enabled on dual-stack capable routers. By sending a specially-crafted IPv6 packet to an interface running IPv4 UDP services, a remote attacker could block the interface or cause the device to crash if the RSVP service is enabled.
Platforms Affected:
- Cisco, IOS 12.0S
- Cisco, IOS 12.0SY
- Cisco, IOS 12.0SZ
- Cisco, IOS 12.1XU
- Cisco, IOS 12.1XV
- Cisco, IOS 12.1YB
- Cisco, IOS 12.1YC
- Cisco, IOS 12.1YD
- Cisco, IOS 12.1YF
- Cisco, IOS 12.1YH
- Cisco, IOS 12.1YI
- Cisco, IOS 12.2B
- Cisco, IOS 12.2BC
- Cisco, IOS 12.2BW
- Cisco, IOS 12.2BY
- Cisco, IOS 12.2BZ
- Cisco, IOS 12.2CX
- Cisco, IOS 12.2CY
- Cisco, IOS 12.2CZ
- Cisco, IOS 12.2DD
- Cisco, IOS 12.2DX
- Cisco, IOS 12.2EU
- Cisco, IOS 12.2EW
- Cisco, IOS 12.2EZ
- Cisco, IOS 12.2FX
- Cisco, IOS 12.2FY
- Cisco, IOS 12.2FZ
- Cisco, IOS 12.2IXA
- Cisco, IOS 12.2IXB
- Cisco, IOS 12.2IXC
- Cisco, IOS 12.2IXD
- Cisco, IOS 12.2JA
- Cisco, IOS 12.2JK
- Cisco, IOS 12.2MB
- Cisco, IOS 12.2SBC
- Cisco, IOS 12.2SEA
- Cisco, IOS 12.2SEB
- Cisco, IOS 12.2SEC
- Cisco, IOS 12.2SED
- Cisco, IOS 12.2SM
- Cisco, IOS 12.2SO
- Cisco, IOS 12.2SU
- Cisco, IOS 12.2SW
- Cisco, IOS 12.2SX
- Cisco, IOS 12.2SXA
- Cisco, IOS 12.2SXB
- Cisco, IOS 12.2SXD
- Cisco, IOS 12.2SXE
- Cisco, IOS 12.2SY
- Cisco, IOS 12.2SZ
- Cisco, IOS 12.2T
- Cisco, IOS 12.2UZ
- Cisco, IOS 12.2XA
- Cisco, IOS 12.2XB
- Cisco, IOS 12.2XC
- Cisco, IOS 12.2XD
- Cisco, IOS 12.2XE
- Cisco, IOS 12.2XF
- Cisco, IOS 12.2XG
- Cisco, IOS 12.2XH
- Cisco, IOS 12.2XI
- Cisco, IOS 12.2XJ
- Cisco, IOS 12.2XK
- Cisco, IOS 12.2XL
- Cisco, IOS 12.2XM
- Cisco, IOS 12.2XQ
- Cisco, IOS 12.2XR
- Cisco, IOS 12.2XT
- Cisco, IOS 12.2XU
- Cisco, IOS 12.2XV
- Cisco, IOS 12.2XW
- Cisco, IOS 12.2YB
- Cisco, IOS 12.2YC
- Cisco, IOS 12.2YD
- Cisco, IOS 12.2YE
- Cisco, IOS 12.2YF
- Cisco, IOS 12.2YG
- Cisco, IOS 12.2YH
- Cisco, IOS 12.2YJ
- Cisco, IOS 12.2YK
- Cisco, IOS 12.2YL
- Cisco, IOS 12.2YM
- Cisco, IOS 12.2YN
- Cisco, IOS 12.2YO
- Cisco, IOS 12.2YP
- Cisco, IOS 12.2YQ
- Cisco, IOS 12.2YR
- Cisco, IOS 12.2YT
- Cisco, IOS 12.2YU
- Cisco, IOS 12.2YV
- Cisco, IOS 12.2YW
- Cisco, IOS 12.2YX
- Cisco, IOS 12.2YY
- Cisco, IOS 12.2YZ
- Cisco, IOS 12.2ZA
- Cisco, IOS 12.2ZB
- Cisco, IOS 12.2ZC
- Cisco, IOS 12.2ZD
- Cisco, IOS 12.2ZE
- Cisco, IOS 12.2ZF
- Cisco, IOS 12.2ZG
- Cisco, IOS 12.2ZJ
- Cisco, IOS 12.2ZL
- Cisco, IOS 12.2ZP
- Cisco, IOS 12.2ZU
- Cisco, IOS 12.3B
- Cisco, IOS 12.3BW
- Cisco, IOS 12.3T
- Cisco, IOS 12.3VA
- Cisco, IOS 12.3XB
- Cisco, IOS 12.3XD
- Cisco, IOS 12.3XF
- Cisco, IOS 12.3XG
- Cisco, IOS 12.3XH
- Cisco, IOS 12.3XJ
- Cisco, IOS 12.3XK
- Cisco, IOS 12.3XQ
- Cisco, IOS 12.3XS
- Cisco, IOS 12.3XU
- Cisco, IOS 12.3XW
- Cisco, IOS 12.3XY
- Cisco, IOS 12.3YA
- Cisco, IOS 12.3YD
- Cisco, IOS 12.3YF
- Cisco, IOS 12.3YI
- Cisco, IOS 12.3YJ
- Cisco, IOS 12.3YQ
- Cisco, IOS 12.3YT
- Cisco, IOS 12.3YU
- Cisco, IOS 12.4XA
- Cisco, IOS prior to 12.1(5)YE6
Remedy:
Refer to cisco-sa-20080326-IPv4IPv6 for patch, upgrade or suggested workaround information. See References.
Consequences:
Denial of Service
References:
- cisco-sa-20080326-IPv4IPv6, Cisco Security Advisory: Cisco IOS User Datagram Protocol Delivery Issue For IPv4/IPv6 Dual-stack Routers at http://www.cisco.com/warp/public/707/cisco-sa-20080326-IPv4IPv6.shtml.
- BID-28461: Cisco IOS Dual-stack Router IPv6 Denial Of Service Vulnerability
- CVE-2008-1153: Cisco IOS 12.1, 12.2, 12.3, and 12.4, with IPv4 UDP services and the IPv6 protocol enabled, allows remote attackers to cause a denial of service (device crash and possible blocked interface) via a crafted IPv6 packet to the device.
- FrSIRT/ADV-2008-1006: Cisco IOS Denial of Service and Information Disclosure Vulnerabilities
- SA29507: Cisco IOS Multiple Vulnerabilities
- SECTRACK ID: 1019713: Cisco IOS UDP Router Services Bug on IPv4/IPv6 Devices Lets Remote Users Deny Service
- US-CERT VU#936177: Cisco IOS denial of service vulnerability
Reported:
Mar 26, 2008
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
Copyright (c) 1994-2008 Internet Security Systems, Inc. All rights reserved worldwide.
For corrections or additions please email xforce@iss.net
