Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2013-0149

The OSPF implementation in Cisco IOS 12.0 through 12.4 and 15.0 through 15.3, IOS-XE 2.x through 3.9.xS, ASA and PIX 7.x through 9.1, FWSM, NX-OS, and StarOS before 14.0.50488 does not properly validate Link State Advertisement (LSA) type 1 packets before performing operations on the LSA database, which allows remote attackers to cause a denial of service (routing disruption) or obtain sensitive packet information via a (1) unicast or (2) multicast packet, aka Bug IDs CSCug34485, CSCug34469, CSCug39762, CSCug63304, and CSCug39795.

SeverityMEDIUM
CVSS5.8
CWENVD-CWE-noinfo
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Secure Firewall Adaptive Security Appliance (ASA) Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco PIX Firewall Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco PIX Firewall cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco NX-OS Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco IOS XE Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco IOS cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco Firewall Services Module (FWSM) cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco Adaptive Security Appliance (ASA) Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco ASR 5000 Series Software cisco-sa-20130801-lsaospf Cisco OpenVuln
Cisco Catalyst 9600 Series Switches cisco-sa-20130801-lsaospf Cisco OpenVuln · software-dependent
Cisco Catalyst 9500 Series Switches cisco-sa-20130801-lsaospf Cisco OpenVuln · software-dependent
Cisco Catalyst 9400 Series Switches cisco-sa-20130801-lsaospf Cisco OpenVuln · software-dependent
Cisco Catalyst 9300 Series Switches cisco-sa-20130801-lsaospf Cisco OpenVuln · software-dependent
Cisco Catalyst 9200 Series Switches cisco-sa-20130801-lsaospf Cisco OpenVuln · software-dependent