CVE-2005-4258
Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD).
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.05%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Unspecified Cisco Catalyst Switches allow remote attackers to cause a denial of service (device crash) via an IP packet with the same source and destination IPs and ports, and with the SYN flag set (aka LanD). NOTE: the provenance of this issue is unknown; the details are obtained solely from the BID.
- CVSS 2.0
- 7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
- EPSS
- 2.05% probability · 80th percentile
- CISA KEV
- Not listed
- Affected
- cisco/catalyst · cisco/catalyst 1200 series · cisco/catalyst 1900 series · cisco/catalyst 2800 series · cisco/catalyst 2820 · cisco/catalyst 2900 · cisco/catalyst 2901 · cisco/catalyst 2902 · cisco/catalyst 2920 · cisco/catalyst 2926 · cisco/catalyst 2926f · cisco/catalyst 2926gl · cisco/catalyst 2926gs · cisco/catalyst 2926t · cisco/catalyst 2940 · cisco/catalyst 2948 · cisco/catalyst 2948-ge-tx · cisco/catalyst 2948g-l3 · cisco/catalyst 2950 · cisco/catalyst 2950 lre · +40 more
- Source
- cve@mitre.org
References
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.