Cisco IOS 12.0, 12.1, and 12.2, when GRE IP tunneling...
Vulnerability Description
Cisco IOS 12.0, 12.1, and 12.2, when GRE IP tunneling is used and the RFC2784 compliance fixes are missing, does not verify the offset field of a GRE packet during decapsulation, which leads to an integer overflow that references data from incorrect memory locations, which allows remote attackers to inject crafted packets into the routing queue, possibly bypassing intended router ACLs.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-4650
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.vupen.com/english/advisories/2006/3502
- http://securitytracker.com/id?1016799
- http://www.osvdb.org/28590
- http://www.securityfocus.com/archive/1/445322/100/0/threaded
- http://www.phenoelit.de/stuff/CiscoGRE.txt
- http://secunia.com/advisories/21783
- http://securityreason.com/securityalert/1526
- http://www.securityfocus.com/bid/19878
- http://www.cisco.com/en/US/tech/tk827/tk369/tsd_technology_security_response09186a008072cd7b.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5713
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28786
More from cisco
View All →Affected Vendor
cisco
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.