7.1
CVSSv2

CVE-2012-4617

Published: 27/09/2012 Updated: 14/02/2013
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS prior to 3.5.2S, and IOS XR 4.1.0 up to and including 4.2.2 allows remote malicious users to cause a denial of service (multiple connection resets) by leveraging a peer relationship and sending a malformed attribute, aka Bug IDs CSCtt35379, CSCty58300, CSCtz63248, and CSCtz62914.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xr 4.2.0

cisco ios xr 4.2.1

cisco ios xr 4.2.2

cisco ios xr 4.1.1

cisco ios xr 4.1.2

cisco ios 15.2

cisco ios xe 3.5.0s

cisco ios xe 3.5.1s

cisco ios xr 4.1

Vendor Advisories

Cisco IOS Software contains a vulnerability in the Border Gateway Protocol (BGP) routing protocol feature The vulnerability can be triggered when the router receives a malformed attribute from a peer on an existing BGP session Successful exploitation of this vulnerability can cause all BGP sessions to reset Repeated exploitation may result ...