漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 and 15.0 through 15.6) and Cisco IOS XE (3.2 through 3.18) could allow an unauthenticated, remote attacker to cause a buffer overflow condition or a reload of an affected device, leading to a denial of service (DoS) condition. These vulnerabilities are due to improper parsing of crafted EnergyWise packets destined to an affected device. An attacker could exploit these vulnerabilities by sending crafted EnergyWise packets to be processed by an affected device. An exploit could allow the attacker to cause a buffer overflow condition or a reload of the affected device, leading to a DoS condition. Cisco IOS Software and Cisco IOS XE Software support EnergyWise for IPv4 communication. Only IPv4 packets destined to a device configured as an EnergyWise domain member can trigger these vulnerabilities. IPv6 packets cannot be used to trigger these vulnerabilities. Cisco Bug ID CSCut50727.
漏洞信息
N/A
漏洞
内存缓冲区边界内操作的限制不恰当
漏洞
Cisco IOS和IOS XE EnergyWise模块安全漏洞
漏洞信息
Cisco IOS和IOS XE都是美国思科(Cisco)公司为其网络设备开发的操作系统。EnergyWise是其中的一个能源管理架构模块。 Cisco IOS 12.2版本和15.0版本至15.6版本和Cisco IOS XE 3.2版本至3.18版本中的EnergyWise模块存在拒绝服务漏洞,该漏洞源于程序没有正确的解析特制的EnergyWise数据包。远程攻击者可利用该漏洞造成缓冲区溢出或重载,导致拒绝服务。
漏洞信息
N/A
漏洞
N/A