HIGH · 8.5

CVE-2008-3806

Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, wh...

Vulnerability Description

Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3805.

CVSS Score

8.5

HIGH

AV:N/AC:L/Au:N/C:N/I:P/A:C
Confidentiality
NONE
Integrity
PARTIAL
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoIos12.0s

References

FAQ

What is CVE-2008-3806?

CVE-2008-3806 is a vulnerability with a CVSS score of 8.5 (HIGH). Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, wh...

How severe is CVE-2008-3806?

CVE-2008-3806 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-3806?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios.