CVE-2010-3035
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
YesDecision
Descriptions
Cisco IOS XR 3.4.0 through 3.9.1, when BGP is enabled, does not properly handle unrecognized transitive attributes, which allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announcement, as demonstrated in the wild in August 2010 with attribute type code 99, aka Bug ID CSCti62211.
Cisco IOS XR v3.4.0 hasta la versión v3.9.1, si BGP está activado, no maneja apropiadamente los atributos transitivos no reconocidos, lo que permite a atacantes remotos provocar una denegación de servicio ("peering reset" o reinicio del homólogo) a través de un mensaje de anuncio de prefijos modificado, como se ha demostrado en la realidad en agosto del 2010 con el código de tipo de atributo 99. También conocido como Bug ID CSCti62211.
Cisco IOS XR, when BGP is the configured routing feature, allows remote attackers to cause a denial-of-service (DoS).
CVSS Scores
SSVC
- Decision:Act
Timeline
- 2010-08-17 CVE Reserved
- 2010-08-30 CVE Published
- 2022-03-25 Exploited in Wild
- 2022-04-15 KEV Due Date
- 2024-07-17 EPSS Updated
- 2024-11-15 CVE Updated
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://mailman.nanog.org/pipermail/nanog/2010-August/024837.html | Mailing List | |
http://osvdb.org/67696 | Vdb Entry | |
http://secunia.com/advisories/41190 | Third Party Advisory | |
http://www.securitytracker.com/id?1024371 | Vdb Entry | |
http://www.vupen.com/english/advisories/2010/2227 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/61443 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b4411f.shtml | 2017-08-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.4.0 Search vendor "Cisco" for product "Ios Xr" and version "3.4.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.4.1 Search vendor "Cisco" for product "Ios Xr" and version "3.4.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.4.2 Search vendor "Cisco" for product "Ios Xr" and version "3.4.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.4.3 Search vendor "Cisco" for product "Ios Xr" and version "3.4.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.5.2 Search vendor "Cisco" for product "Ios Xr" and version "3.5.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.5.3 Search vendor "Cisco" for product "Ios Xr" and version "3.5.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.5.4 Search vendor "Cisco" for product "Ios Xr" and version "3.5.4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.6.0 Search vendor "Cisco" for product "Ios Xr" and version "3.6.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.6.1 Search vendor "Cisco" for product "Ios Xr" and version "3.6.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.6.2 Search vendor "Cisco" for product "Ios Xr" and version "3.6.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.6.3 Search vendor "Cisco" for product "Ios Xr" and version "3.6.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.7.0 Search vendor "Cisco" for product "Ios Xr" and version "3.7.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.7.1 Search vendor "Cisco" for product "Ios Xr" and version "3.7.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.7.2 Search vendor "Cisco" for product "Ios Xr" and version "3.7.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.7.3 Search vendor "Cisco" for product "Ios Xr" and version "3.7.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.8.0 Search vendor "Cisco" for product "Ios Xr" and version "3.8.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.8.1 Search vendor "Cisco" for product "Ios Xr" and version "3.8.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.8.2 Search vendor "Cisco" for product "Ios Xr" and version "3.8.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.8.3 Search vendor "Cisco" for product "Ios Xr" and version "3.8.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.8.4 Search vendor "Cisco" for product "Ios Xr" and version "3.8.4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.9.0 Search vendor "Cisco" for product "Ios Xr" and version "3.9.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xr Search vendor "Cisco" for product "Ios Xr" | 3.9.1 Search vendor "Cisco" for product "Ios Xr" and version "3.9.1" | - |
Affected
|