imPC@ndo IT

Tracker / CVE-2019-1869

CVE-2019-1869

High 8.6

A vulnerability in the internal packet-processing functionality of the Cisco StarOS operating system running on virtual platforms could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition. The vulnerability is due to a logic error that may occur under specific traffic conditions. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device. A successful exploit could allow the attacker to prevent the targeted service interface from receiving any traffic, which would lead to a DoS condition on the affected interface. The device may have to be manually reloaded to recover from exploitation of this vulnerability.

Affected products and versions

cisco staros · 21.10 → 21.10.2
cisco staros · 21.11 → 21.11.1
cisco staros · 21.6 → 21.6.13
cisco staros · 21.6b → 21.6b.16
cisco staros · 21.7 → 21.7.11
cisco staros · 21.8 → 21.8.10
cisco staros · 21.9 → 21.9.7

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References