7.8
CVSSv2

CVE-2011-0949

Published: 31/05/2011 Updated: 12/07/2011
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS XR 3.6.x, 3.8.x prior to 3.8.3, and 3.9.x prior to 3.9.1 does not properly remove sshd_lock files from /tmp/, which allows remote malicious users to cause a denial of service (disk consumption) by making many SSHv1 connections, aka Bug ID CSCtd64417.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xr 3.6.0

cisco ios xr 3.6.1

cisco ios xr 3.6.2

cisco ios xr 3.6.3

cisco ios xr 3.8.0

cisco ios xr 3.8.2

cisco ios xr 3.8.1

cisco ios xr 3.9.0

Vendor Advisories

Cisco IOS XR Software contains a vulnerability in the SSH application that may result in a denial of service condition when the SSH version 1 (SSHv1) protocol is used The vulnerability is a result of unremoved sshd_lock files consuming all available space in the /tmp filesystem Cisco has released software updates that address this vulnerability ...