Vulnerabilities > CVE-2002-0339 - Unspecified vulnerability in Cisco IOS

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
cisco
nessus

Summary

Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.

Nessus

  • NASL familyCISCO
    NASL idCISCO-SA-20020227-IOS-CEFHTTP.NASL
    descriptionExcluding Cisco 12000 Series Internet Routers, all Cisco devices running Cisco IOS software that have Cisco Express Forwarding (CEF) enabled can leak information from previous packets that have been handled by the device. This can happen if the packet length described in the IP header is bigger than the physical packet size. Packets like these will be expanded to fit the IP length and, during that expansion, an information leak may occur. Please note that an attacker can only collect parts of some packets but not the whole session. No other Cisco product is vulnerable. Devices that have fast switching enabled are not affected by this vulnerability. Cisco 12000 Series Internet Routers are not affected by this vulnerability. The workaround for this vulnerability is to disable CEF.
    last seen2020-03-17
    modified2010-09-01
    plugin id48964
    published2010-09-01
    reporterThis script is (C) 2010-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/48964
    titleData Leak with Cisco Express Forwarding Enabled - Cisco Systems
  • NASL familyCISCO
    NASL idCSCDU20643.NASL
    descriptionIf the remote device has Cisco Express Forwarding (CEF) enabled, it may leak information from previous packets that have been handled by the device. An attacker may use this flaw to sniff your network remotely. This vulnerability is documented as Cisco Bug ID CSCdu20643.
    last seen2020-03-28
    modified2002-06-05
    plugin id10983
    published2002-06-05
    reporterThis script is Copyright (C) 2002-2020 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/10983
    titleCisco IOS Cisco Express Forwarding (CEF) Previous Packet Information Disclosure (CSCdu20643)