Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not handle the "fragment" keyword in a compiled ACL (Turbo ACL) for packets that are sent to the router, which allows remote attackers to cause a denial of service via a flood of fragments.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-03-09T05:00:00

Updated: 2024-08-08T04:37:06.756Z

Reserved: 2001-11-22T00:00:00

Link: CVE-2001-0863

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2001-12-06T05:00:00.000

Modified: 2017-10-10T01:29:54.827

Link: CVE-2001-0863

cve-icon Redhat

No data.