CVE-2021-1378
Cisco StarOS Denial of Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the SSH service of the Cisco StarOS operating system could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition. The vulnerability is due to a logic error that may occur under specific traffic conditions. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device. A successful exploit could allow the attacker to prevent the targeted service from receiving any traffic, which would lead to a DoS condition on the affected device.
Una vulnerabilidad en el servicio SSH del sistema operativo Cisco StarOS podría permitir a un atacante remoto no autenticado causar que un dispositivo afectado dejara de procesar el tráfico, resultando en una condición de denegación de servicio (DoS). La vulnerabilidad es debido a un error lógico que puede ocurrir en condiciones de tráfico específicas. Un atacante podría explotar esta vulnerabilidad mediante el envío una serie de paquetes diseñados hacia un dispositivo afectado. Una explotación con éxito podría permitir al atacante impedir que el servicio apuntado reciba cualquier tráfico, lo que conllevaría a una condición de DoS en el dispositivo afectado
CVSS Scores
SSVC
- Decision:Attend
Timeline
- 2020-11-13 CVE Reserved
- 2021-02-17 CVE Published
- 2023-11-03 EPSS Updated
- 2024-11-08 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-400: Uncontrolled Resource Consumption
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Staros Search vendor "Cisco" for product "Staros" | >= 21.9.0 <= 21.19.10 Search vendor "Cisco" for product "Staros" and version " >= 21.9.0 <= 21.19.10" | - |
Affected
|