Vulnerability Description
Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) UPDATE messages.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | >= 11.1, <= 12.2\(14\)sx2 |
References
- http://www.cisco.com/warp/public/707/cisco-sa-20040616-bgp.shtmlVendor Advisory
- http://www.kb.cert.org/vuls/id/784540PatchThird Party AdvisoryUS Government Resource
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16427Third Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- http://www.cisco.com/warp/public/707/cisco-sa-20040616-bgp.shtmlVendor Advisory
- http://www.kb.cert.org/vuls/id/784540PatchThird Party AdvisoryUS Government Resource
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16427Third Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
FAQ
What is CVE-2004-0589?
CVE-2004-0589 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) U...
How severe is CVE-2004-0589?
CVE-2004-0589 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-0589?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios.