Back to search
CVE-2007-2813
Published: May 22, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause a denial of service via a malformed (1) ClientHello, (2) ChangeCipherSpec, or (3) Finished message during an SSL session.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
cisco-ios-finished-dos(34442)
vdb-entry
x_refsource_XF
1018094
vdb-entry
x_refsource_SECTRACK
cisco-ios-changecipherspec-dos(34436)
vdb-entry
x_refsource_XF
ADV-2007-1910
vdb-entry
x_refsource_VUPEN
25361
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:5745
vdb-entry
signature
x_refsource_OVAL
24097
vdb-entry
x_refsource_BID
cisco-ios-clienthello-dos(34432)
vdb-entry
x_refsource_XF
35339
vdb-entry
x_refsource_OSVDB
20070522 Multiple Vulnerabilities in Cisco IOS While Processing SSL Packets
vendor-advisory
x_refsource_CISCO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now