mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
293 lines
11 KiB
JSON
293 lines
11 KiB
JSON
{
|
|
"id": "CVE-2015-0645",
|
|
"sourceIdentifier": "psirt@cisco.com",
|
|
"published": "2015-03-26T10:59:10.753",
|
|
"lastModified": "2024-11-21T02:23:27.827",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "The Layer 4 Redirect (L4R) feature in Cisco IOS XE 2.x and 3.x before 3.10.4S, 3.11 before 3.11.3S, 3.12 before 3.12.2S, 3.13 before 3.13.1S, 3.14 before 3.14.0S, and 3.15 before 3.15.0S allows remote attackers to cause a denial of service (device reload) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuq59131."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "La caracter\u00edstica Layer 4 Redirect (L4R) en Cisco IOS XE 2.x y 3.x anterior a 3.10.4S, 3.11 anterior a 3.11.3S, 3.12 anterior a 3.12.2S, 3.13 anterior a 3.13.1S, 3.14 anterior a 3.14.0S, y 3.15 anterior a 3.15.0S permite a atacantes remotos causar una denegaci\u00f3n de servicio (recarga de dispositivo) a trav\u00e9s de paquetes (1) IPv4 o (2) IPv6 malformados, tambi\u00e9n conocido como Bug ID CSCuq59131."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:C",
|
|
"baseScore": 7.8,
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "LOW",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "COMPLETE"
|
|
},
|
|
"baseSeverity": "HIGH",
|
|
"exploitabilityScore": 10.0,
|
|
"impactScore": 6.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-20"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F6C871C9-3188-45A8-813D-20377636CB93"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "48981190-4C87-48B8-918F-A8A9951254BA"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "58ECBD42-D3C1-42E2-938B-D85BE56A198E"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8D6A8329-2A58-446A-B3C1-21AA2BBD24AE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F4D44065-91B3-4BED-B0ED-572F97B2D0BC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1A4FDC07-F76A-4158-95A4-040FE29B14F4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.1s.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6D8110BB-6112-4CD5-A7ED-8D0E4225B7FF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.2s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AA132110-6338-4958-A23F-E09058011181"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.2s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "52D93563-1E49-4ED7-885D-35836F2545FB"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.2s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2F2BF213-8DBB-4EB7-9D40-4F1DEB7034E5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.2s.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "913D878F-4F8C-4E8E-86D0-12D3BFC92425"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.3s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "982A0A36-F00E-4A8A-8237-07D90B9BA1F9"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.3s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7A4D6F82-A97D-423D-A3FD-6C89B3F4E53F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.3s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C0656295-7CD0-4C81-9549-77B9937C01B4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C223DFA6-C6CF-4F59-B7F0-F6B2AA0B108A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "07C72438-15C6-499B-AA1E-3A8B4E7F38C8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "417FAC04-E216-43EC-B909-BCF66C3C6506"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7E49E63B-57B8-4DF0-A1BF-FADA3DC1F4B3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.4:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "85CAEF83-8350-4A27-A241-B5D9814BD58D"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.5:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "566F9E3C-47F2-4B61-90A2-8E08C4642503"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.4s.6:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B2E19C68-9055-4250-932A-5AE7EB23FA73"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.5s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FC6976C9-7FC4-41B2-B9D8-D6A23C0E7D04"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.5s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4F0311A2-7D85-424F-84EC-42A037D1A145"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.5s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "045F7A51-41A4-424E-85DE-39BA4868DB73"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.5s_base:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "900F8EA7-23BA-4C59-AD07-AF056836ED0A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.6s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B2C6BCB1-4D6A-4F8E-B1E3-7ED927442583"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.6s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4414784F-7C38-45DA-B955-344AFCA4C42A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.6s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1EAD6D05-067F-405E-A2C3-1045F96E1725"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.6s_base:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E3D6CE00-954F-4515-A60B-CA524EA46682"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.10s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5C1C77A7-FCD5-4558-A351-081D6678DB21"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.10s.0a:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A9B42071-2BAA-4459-B575-EBD72A111381"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.10s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "24C948D8-C540-4FF1-A9F7-BFB20E5541FE"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.10s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7AF1294B-B4F6-40CC-A115-942B18CDA361"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.10s.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B72E6572-FF41-4606-9DA5-FA486D591A58"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.11s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C0A98DFE-18FF-455A-AFA6-49960CB98C85"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.11s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "277C9543-A842-45AB-A2EF-DB2F8412D748"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.11s.2:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6C942D30-8344-425E-804E-E1BB1F1F0D22"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.12s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E5E6FF1A-D90D-412A-8159-E766DC14FA57"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.12s.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "84E6DEE6-50EF-4333-B0B9-964A633734D1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:cisco:ios_xe:3.13s.0:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "28303ADA-1B8E-42F6-9CD1-A457D863727B"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-iosxe",
|
|
"source": "psirt@cisco.com",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id/1031981",
|
|
"source": "psirt@cisco.com"
|
|
},
|
|
{
|
|
"url": "http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-iosxe",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id/1031981",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108"
|
|
}
|
|
]
|
|
} |