DOS: Cisco Telnet Buffer Overflow

This signature detects attempts to exploit a known vulnerability against Cisco CBOS. CBOS versions earlier than 2.4.5 are vulnerable. Attackers can send overly large packets to the CBOS telnet daemon to cause a denial of service on the Cisco device.

Extended Description

CBOS (Cisco Broadband Operating System) is the operating system for Cisco 600 series routers. It is possible for a remote user to cause a denial of service of a CPE running CBOS software 2.4.4 and prior. Sending an unusually large packet to the telnet port will exploit this issue. The following devices in the Cisco 600 series of routers are affected by this issue: 605, 626, 627, 633, 673, 675, 675e, 676, 677, 677i and 678. This vulnerability has been assigned Cisco Bug ID CSCdv50135.

Affected Products

Cisco cbos

Short Name
DOS:NETDEV:CISCO-TELNET-BOF1
Severity
Minor
Recommended
False
Recommended Action
None
Category
DOS
Keywords
Buffer CVE-2002-0886 Cisco Overflow Telnet bid:4814
Release Date
04/01/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Cisco

CVSS Score

5.0

Found a potential security threat?