HIGH · 7.8

CVE-2006-1670

Control cards for Cisco Optical Networking System (ONS) 15000 series nodes before 20060405 allow remote attackers to cause a denial of service (memory exhaustion and possibly card reset) by sending an...

Vulnerability Description

Control cards for Cisco Optical Networking System (ONS) 15000 series nodes before 20060405 allow remote attackers to cause a denial of service (memory exhaustion and possibly card reset) by sending an invalid response when the final ACK is expected, aka bug ID CSCei45910.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoOptical Networking Systems Software1.0
CiscoOns 15310-Cl SeriesAll versions
CiscoOns 15600All versions
CiscoOns 15454 MsppAll versions
CiscoOns 15454 MstpAll versions

References

FAQ

What is CVE-2006-1670?

CVE-2006-1670 is a vulnerability with a CVSS score of 7.8 (HIGH). Control cards for Cisco Optical Networking System (ONS) 15000 series nodes before 20060405 allow remote attackers to cause a denial of service (memory exhaustion and possibly card reset) by sending an...

How severe is CVE-2006-1670?

CVE-2006-1670 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-1670?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Optical Networking Systems Software, Cisco Ons 15310-Cl Series, Cisco Ons 15600, Cisco Ons 15454 Mspp, Cisco Ons 15454 Mstp.