Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The OSPF implementation on Enterasys switches and routers does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet, a related issue to CVE-2013-0149.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Enterasys Switches/Routers OSPF 安全漏洞
Vulnerability Description
Enterasys Switches和Routers是美国凯创系统(Enterasys)公司的交换机和路由器产品。 Enterasys交换机和路由器中的OSPF实现过程中存在安全漏洞,该漏洞源于在对LSA数据库执行操作之前,程序没有考虑Link State Advertisement中Link State ID值存在副本的可能性。远程攻击者可借助特制的LSA数据包利用该漏洞导致拒绝服务(路由破坏)或者获取敏感数据包信息。
CVSS Information
N/A
Vulnerability Type
N/A