漏洞标题
思科StarOS IPv6拒绝服务漏洞
漏洞描述信息
思科StarOS IPv6拒绝服务漏洞
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
漏洞类别
N/A
漏洞标题
Cisco StarOS IPv6 Denial of Service Vulnerability
漏洞描述信息
A vulnerability in the IPv6 implementation of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient validation of incoming IPv6 traffic. An attacker could exploit this vulnerability by sending a crafted IPv6 packet to an affected device with the goal of reaching the vulnerable section of the input buffer. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. This vulnerability is specific to IPv6 traffic. IPv4 traffic is not affected.
CVSS信息
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H
漏洞类别
内存缓冲区边界内操作的限制不恰当
漏洞标题
Cisco StarOS 缓冲区错误漏洞
漏洞描述信息
Cisco StarOS是美国思科(Cisco)公司的一套虚拟化操作系统。 Cisco StarOS 21.18.3之前版本中的IPv6实现存在缓冲区错误漏洞,该漏洞源于程序没有充分验证所接收的IPv6流量。远程攻击者可通过发送特制的IPv6数据包利用该漏洞造成拒绝服务。以下产品及版本受到影响:Cisco ASR 5000 Series Aggregation Services Routers;Cisco Virtualized Packet Core-Single Instance (VPC-SI)。
CVSS信息
N/A
漏洞类别
缓冲区错误