Cisco Catalyst 4000 Series Switch Denial of Service Vulnerability (CSCug41049 / CSCue61890)

medium Nessus Plugin ID 73828

Synopsis

The remote device is running a vulnerable IOS version.

Description

The remote Cisco device potentially contains an issue which is potentially affected by errors related to handling Virtual Switching Systems (VSS) or Bidirectional Forwarding Detection (BFD) traffic that could allow denial of service attacks.

Solution

Upgrade to the relevant fixed version referenced in Cisco bug IDs CSCug41049 and CSCue61890.

See Also

http://www.nessus.org/u?e566a186

https://tools.cisco.com/security/center/viewAlert.x?alertId=33558

Plugin Details

Severity: Medium

ID: 73828

File Name: cisco-sn-CVE-2014-2131-ios.nasl

Version: 1.11

Type: local

Family: CISCO

Published: 5/2/2014

Updated: 11/26/2019

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Medium

Base Score: 6.1

Temporal Score: 4.5

Vector: CVSS2#AV:A/AC:L/Au:N/C:N/I:N/A:C

CVSS Score Source: CVE-2014-2131

Vulnerability Information

CPE: cpe:/o:cisco:ios

Required KB Items: Host/Cisco/IOS/Version, Host/Cisco/IOS/Model

Exploit Ease: No known exploits are available

Patch Publication Date: 3/28/2014

Vulnerability Publication Date: 3/28/2014

Reference Information

CVE: CVE-2014-2131

BID: 66515

CISCO-BUG-ID: CSCue61890, CSCug41049