Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-1151

Overview

Vulnerability Score 7.1 7.1
CVE Id CVE-2008-1151
Last Modified 07 Mar 2011 10:06:01
Published 27 Mar 2008 01:44:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2008-1151

Summary

Memory leak in the virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (memory consumption) via a series of PPTP sessions, related to "dead memory" that remains allocated after process termination, aka bug ID CSCsj58566.

Vulnerable Systems

Operating System

  • Cisco Ios 12.2


References

CERT - TA08-087B

VUPEN - ADV-2008-1006

BID - 28460

CISCO - 20080326 Cisco IOS Virtual Private Dial-up Network Denial of Service Vulnerability

SECTRACK - 1019714

XF - cisco-ios-vpdn-pptp-dos(41483)

SECUNIA - 29507


Last Updated: 27 May 2016 10:47:02