CVE-2011-2059
The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive information about the presence of the IOS operating system via an ICMPv6 Echo Request packet containing a…
Does this matter?
Lower severity and a low EPSS score (1.56%). Track it; it rarely justifies an emergency change on its own.
Description
The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain potentially sensitive information about the presence of the IOS operating system via an ICMPv6 Echo Request packet containing a Hop-by-Hop (HBH) extension header (EH) with a 0x0c01050c value in the PadN option data, aka Bug ID CSCtq02219.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.56% probability · 74th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- cisco/ios
- Source
- psirt@cisco.com
References
- http://blogs.cisco.com/security/1999tcp-redux-the-ipv6-flavorBroken Link
- http://tools.cisco.com/security/center/viewIpsSignature.x?signatureId=36606&signatureSubId=0Vendor Advisory
- http://blogs.cisco.com/security/1999tcp-redux-the-ipv6-flavorBroken Link
- http://tools.cisco.com/security/center/viewIpsSignature.x?signatureId=36606&signatureSubId=0Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.