The Multicast Source Discovery Protocol (MSDP) implementation in Cisco IOS 12.0, 12.2 through 12.4, and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.1S and 3.1.xSG and 3.2.xSG before 3.2.2SG allows remote attackers to cause a denial of service (device reload) via encapsulated IGMP data in an MSDP packet, aka Bug ID CSCtr28857.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1026868 | vdb entry third party advisory |
http://secunia.com/advisories/48630 | third party advisory not applicable |
http://www.securityfocus.com/bid/52759 | vdb entry third party advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120328-msdp | vendor advisory |
http://osvdb.org/80693 | vdb entry broken link |
http://secunia.com/advisories/48633 | third party advisory not applicable |
https://exchange.xforce.ibmcloud.com/vulnerabilities/74431 | vdb entry third party advisory |