Thursday, September 2, 2010

Cisco IOS XR Software: Border Gateway Protocol Vulnerability

Users of Cisco IOS XR Software please be advised of a Border Gateway Protocol vulnerability that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
cisco-sa-20100827-bgp: Cisco IOS XR Software Border Gateway Protocol Vulnerability
Affected Products

=================



This vulnerability affects all Cisco IOS XR Software devices

configured with BGP routing.


Details

=======



This vulnerability affects Cisco IOS XR devices running affected

software versions and configured with the BGP routing feature.



The vulnerability manifests itself when a BGP peer announces a prefix

with a specific, valid but unrecognized transitive attribute. On

receipt of this prefix, the Cisco IOS XR device will corrupt the

attribute before sending it to the neighboring devices. Neighboring

devices that receive this corrupted update may reset the BGP peering

session.
Read more at www.criticalwatch.com
 

No comments:

Post a Comment