Vulnerability Description
Buffer overflow in the Cisco Firewall Services Module (FWSM) in Cisco Catalyst 6500 and 7600 series devices allows remote attackers to cause a denial of service (crash and reload) via HTTP auth requests for (1) TACACS+ or (2) RADIUS authentication.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Catalyst 6500 | All versions |
| Cisco | Catalyst 6500 Ws-Svc-Nam-1 | 2.2\(1a\) |
| Cisco | Catalyst 6500 Ws-Svc-Nam-2 | 2.2\(1a\) |
| Cisco | Catalyst 6500 Ws-X6380-Nam | 2.1\(2\) |
| Cisco | Catalyst 7600 Ws-Svc-Nam-1 | 2.2\(1a\) |
| Cisco | Catalyst 7600 Ws-Svc-Nam-2 | 2.2\(1a\) |
| Cisco | Catalyst 7600 Ws-X6380-Nam | 2.1\(2\) |
| Cisco | Firewall Services Module | All versions |
| Cisco | Catos | 5.4\(1\) |
References
- http://www.cisco.com/warp/public/707/cisco-sa-20031215-fwsm.shtmlPatchVendor Advisory
- http://www.cisco.com/warp/public/707/cisco-sa-20031215-fwsm.shtmlPatchVendor Advisory
FAQ
What is CVE-2003-1001?
CVE-2003-1001 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Buffer overflow in the Cisco Firewall Services Module (FWSM) in Cisco Catalyst 6500 and 7600 series devices allows remote attackers to cause a denial of service (crash and reload) via HTTP auth reques...
How severe is CVE-2003-1001?
CVE-2003-1001 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1001?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Catalyst 6500, Cisco Catalyst 6500 Ws-Svc-Nam-1, Cisco Catalyst 6500 Ws-Svc-Nam-2, Cisco Catalyst 6500 Ws-X6380-Nam, Cisco Catalyst 7600 Ws-Svc-Nam-1.