Release date:
Updated on:
Affected Systems:
Cisco IOS
Description:
--------------------------------------------------------------------------------
Bugtraq id: 67399
CVE (CAN) ID: CVE-2014-3262
Cisco IOS is an interconnected network operating system used on most Cisco system routers and network switches.
The Locator/ID Separation Protocol (LISP) of Cisco IOS and ios xe software controls the way messages are processed, some parameters of the LISP Control Message on the ITR are not effectively checked. unauthenticated remote attackers can cause the affected device to Disable Cisco Express Forwarding and cause DOS.
<* Source: Cisco
Link: http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3262
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Cisco
-----
Cisco has released a Security Bulletin (CVE-2014-3262) and patches for this:
CVE-2014-3262: Cisco IOS Software and ios xe Software LISP Denial of Service Vulnerability
Link: http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3262
This article permanently updates the link address: