CVE-2008-0537
Unspecified vulnerability in the Supervisor Engine 32 (Sup32), Supervisor Engine 720 (Sup720), and Route Switch Processor 720 (RSP720) for multiple Cisco products, when using Multi Protocol Label Switching (MPLS) VPN and OSPF sham-link, allows remote…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.89%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Unspecified vulnerability in the Supervisor Engine 32 (Sup32), Supervisor Engine 720 (Sup720), and Route Switch Processor 720 (RSP720) for multiple Cisco products, when using Multi Protocol Label Switching (MPLS) VPN and OSPF sham-link, allows remote attackers to cause a denial of service (blocked queue, device restart, or memory leak) via unknown vectors.
- CVSS 2.0
- 7.1 HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
- EPSS
- 1.89% probability · 78th percentile
- CISA KEV
- Not listed
- Affected
- cisco/route switch processor · cisco/supervisor engine
- Source
- psirt@cisco.com
References
- http://secunia.com/advisories/29559Vendor Advisory
- http://www.cisco.com/warp/public/707/cisco-sa-20080326-queue.shtmlVendor Advisory
- http://www.securityfocus.com/bid/28463
- http://www.securitytracker.com/id?1019716
- http://www.us-cert.gov/cas/techalerts/TA08-087B.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2008/1005/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41466
- http://secunia.com/advisories/29559Vendor Advisory
- http://www.cisco.com/warp/public/707/cisco-sa-20080326-queue.shtmlVendor Advisory
- http://www.securityfocus.com/bid/28463
- http://www.securitytracker.com/id?1019716
- http://www.us-cert.gov/cas/techalerts/TA08-087B.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2008/1005/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41466
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.