xfocus logo xfocus title
首页 焦点原创 安全文摘 安全工具 安全漏洞 焦点项目 焦点论坛 关于我们
English Version

Cisco Catalyst非标准TCP标记数据包连接请求远程拒绝服务攻击漏洞


发布时间:2003-07-09
更新时间:2003-07-09
严重程度:
威胁程度:远程拒绝服务
错误类型:意外情况处置错误
利用方式:服务器模式

BUGTRAQ ID:8149

受影响系统
Cisco Catalyst 4000 4.5 (9)        
Cisco Catalyst 4000 4.5 (8)        
Cisco Catalyst 4000 4.5 (7)        
Cisco Catalyst 4000 4.5 (6)        
Cisco Catalyst 4000 4.5 (5)        
Cisco Catalyst 4000 4.5 (4b)      
Cisco Catalyst 4000 4.5 (4)        
Cisco Catalyst 4000 4.5 (3)        
Cisco Catalyst 4000 4.5 (2)        
Cisco Catalyst 4000 4.5 (10)      
Cisco Catalyst 4000 5.1 (2a)      
Cisco Catalyst 4000 5.1 (1a)      
Cisco Catalyst 4000 5.1 (1)        
Cisco Catalyst 4000 5.1            
Cisco Catalyst 4000 5.2 (7)        
Cisco Catalyst 4000 5.2 (6)        
Cisco Catalyst 4000 5.2 (5)        
Cisco Catalyst 4000 5.2 (4)        
Cisco Catalyst 4000 5.2 (2)        
Cisco Catalyst 4000 5.2 (1a)      
Cisco Catalyst 4000 5.2 (1)        
Cisco Catalyst 4000 5.2            
Cisco Catalyst 4000 5.4 (3)        
Cisco Catalyst 4000 5.4 (2)        
Cisco Catalyst 4000 5.4 (1)        
Cisco Catalyst 4000 5.4            
Cisco Catalyst 4000 5.4.1          
Cisco Catalyst 4000 5.5 (4b)      
Cisco Catalyst 4000 5.5 (4)        
Cisco Catalyst 4000 5.5 (3)        
Cisco Catalyst 4000 5.5 (2)        
Cisco Catalyst 4000 5.5 (13)      
Cisco Catalyst 4000 5.5 (1)        
Cisco Catalyst 4000 5.5            
Cisco Catalyst 4000 5.5.5          
Cisco Catalyst 4000 6.1 (1c)      
Cisco Catalyst 4000 6.1 (1b)      
Cisco Catalyst 4000 6.1 (1a)      
Cisco Catalyst 4000 6.1 (1)        
Cisco Catalyst 4000 6.3 (4)        
Cisco Catalyst 4000 6.3.5          
Cisco Catalyst 5000 4.5 (9)        
Cisco Catalyst 5000 4.5 (8)        
Cisco Catalyst 5000 4.5 (7)        
Cisco Catalyst 5000 4.5 (6)        
Cisco Catalyst 5000 4.5 (5)        
Cisco Catalyst 5000 4.5 (4b)      
Cisco Catalyst 5000 4.5 (4)        
Cisco Catalyst 5000 4.5 (3)        
Cisco Catalyst 5000 4.5 (2)        
Cisco Catalyst 5000 4.5 (13a)      
Cisco Catalyst 5000 4.5 (12)      
Cisco Catalyst 5000 4.5 (11)      
Cisco Catalyst 5000 4.5 (10)      
Cisco Catalyst 5000 5.1 (2a)      
Cisco Catalyst 5000 5.1 (1)        
Cisco Catalyst 5000 5.1            
Cisco Catalyst 5000 5.2 (4)        
Cisco Catalyst 5000 5.2 (3)        
Cisco Catalyst 5000 5.2 (2)        
Cisco Catalyst 5000 5.2 (1)        
Cisco Catalyst 5000 5.2            
Cisco Catalyst 5000 5.4 (4)        
Cisco Catalyst 5000 5.4 (3)        
Cisco Catalyst 5000 5.4 (2)        
Cisco Catalyst 5000 5.4 (1)        
Cisco Catalyst 5000 5.4.1          
Cisco Catalyst 5000 5.5 (7)        
Cisco Catalyst 5000 5.5 (6)        
Cisco Catalyst 5000 5.5 (4b)      
Cisco Catalyst 5000 5.5 (4)        
Cisco Catalyst 5000 5.5 (3)        
Cisco Catalyst 5000 5.5 (2)        
Cisco Catalyst 5000 5.5 (13)      
Cisco Catalyst 5000 5.5 (1)        
Cisco Catalyst 5000 6.1 (3)        
Cisco Catalyst 5000 6.1 (2)        
Cisco Catalyst 5000 6.1 (1c)      
Cisco Catalyst 5000 6.1 (1b)      
Cisco Catalyst 5000 6.1 (1a)      
Cisco Catalyst 5000 6.1 (1)        
Cisco Catalyst 5000 6.3 (4)        
Cisco Catalyst 6000 5.3 (6)CSX    
Cisco Catalyst 6000 5.3 (5a)CSX    
Cisco Catalyst 6000 5.3 (5)CSX    
Cisco Catalyst 6000 5.3 (4)CSX    
Cisco Catalyst 6000 5.3 (3)CSX    
Cisco Catalyst 6000 5.3 (2)CSX    
Cisco Catalyst 6000 5.3 (1a)CSX    
Cisco Catalyst 6000 5.3 (1)CSX    
Cisco Catalyst 6000 5.4 (4)        
Cisco Catalyst 6000 5.4 (3)        
Cisco Catalyst 6000 5.4 (2)        
Cisco Catalyst 6000 5.4 (1)        
Cisco Catalyst 6000 5.4            
Cisco Catalyst 6000 5.4.1          
Cisco Catalyst 6000 5.5 (4b)      
Cisco Catalyst 6000 5.5 (4a)      
Cisco Catalyst 6000 5.5 (4)        
Cisco Catalyst 6000 5.5 (3)        
Cisco Catalyst 6000 5.5 (2)        
Cisco Catalyst 6000 5.5 (13)      
Cisco Catalyst 6000 5.5 (1)        
Cisco Catalyst 6000 5.5            
Cisco Catalyst 6000 6.1 (2.13)    
Cisco Catalyst 6000 6.1 (1c)      
Cisco Catalyst 6000 6.1 (1b)      
Cisco Catalyst 6000 6.1 (1a)      
Cisco Catalyst 6000 6.1 (1)        
Cisco Catalyst 6000 6.2 (0.111)    
Cisco Catalyst 6000 6.2 (0.110)    
Cisco Catalyst 6000 6.3 (4)        
Cisco Catalyst 6000 6.3 (0.7)PAN  
Cisco Catalyst 6000 7.1 (2)        
Cisco Catalyst 6000 7.1            
Cisco Catalyst 6000 7.5 (1)        
Cisco Catalyst 6000 7.6 (1)        
Cisco CatOS 2.1 (9)                
Cisco CatOS 2.1 (8)                
Cisco CatOS 2.1 (7)                
Cisco CatOS 2.1 (6)                
Cisco CatOS 2.1 (5)                
Cisco CatOS 2.1 (4)                
Cisco CatOS 2.1 (3)                
Cisco CatOS 2.1 (2)                
Cisco CatOS 2.1 (12)              
Cisco CatOS 2.1 (11)              
Cisco CatOS 2.1 (10)              
Cisco CatOS 2.1 (1)                
Cisco CatOS 2.2 (2)                
Cisco CatOS 2.2 (1)                
Cisco CatOS 2.3 (1)                
Cisco CatOS 2.4 (5a)              
Cisco CatOS 2.4 (5)                
Cisco CatOS 2.4 (4)                
Cisco CatOS 2.4 (3)                
Cisco CatOS 2.4 (2)                
Cisco CatOS 2.4 (1)                
Cisco CatOS 3.1 (2a)              
Cisco CatOS 3.1 (2)                
Cisco CatOS 3.1 (1)                
Cisco CatOS 3.2 (8) - GDR          
Cisco CatOS 3.2 (7)                
Cisco CatOS 3.2 (6)                
Cisco CatOS 3.2 (5)                
Cisco CatOS 3.2 (4)                
Cisco CatOS 3.2 (3)                
Cisco CatOS 3.2 (2)                
Cisco CatOS 3.2 (1b)              
Cisco CatOS 3.2 (1)                
Cisco CatOS 4.1 (3)                
Cisco CatOS 4.1 (2)                
Cisco CatOS 4.1 (1)                
Cisco CatOS 4.2 (2)                
Cisco CatOS 4.2 (1)                
Cisco CatOS 4.3 (1a)              
Cisco CatOS 4.4 (1)                
Cisco CatOS 4.5 (9)                
Cisco CatOS 4.5 (8)                
Cisco CatOS 4.5 (7)                
Cisco CatOS 4.5 (6a)              
Cisco CatOS 4.5 (6)                
Cisco CatOS 4.5 (5)                
Cisco CatOS 4.5 (4)                
Cisco CatOS 4.5 (3)                
Cisco CatOS 4.5 (2)                
Cisco CatOS 4.5 (13a)              
Cisco CatOS 4.5 (13)              
Cisco CatOS 4.5 (12a)              
Cisco CatOS 4.5 (12)              
Cisco CatOS 4.5 (11)              
Cisco CatOS 4.5 (10)              
Cisco CatOS 4.5 (1)                
Cisco CatOS 5.1 (2b)              
Cisco CatOS 5.1 (2a)              
Cisco CatOS 5.1 (1a)CSX            
Cisco CatOS 5.1 (1a)              
Cisco CatOS 5.1 (1)CSX            
Cisco CatOS 5.1 (1)                
Cisco CatOS 5.2 (7a)              
Cisco CatOS 5.2 (7)                
Cisco CatOS 5.2 (6)                
Cisco CatOS 5.2 (5)                
Cisco CatOS 5.2 (4)                
Cisco CatOS 5.2 (3a)CSX            
Cisco CatOS 5.2 (3)CSX            
Cisco CatOS 5.2 (3)                
Cisco CatOS 5.2 (2)CSX            
Cisco CatOS 5.2 (2)                
Cisco CatOS 5.2 (1)CSX            
Cisco CatOS 5.2 (1)                
Cisco CatOS 5.3 (6a)CSX            
Cisco CatOS 5.3 (6)CSX            
Cisco CatOS 5.3 (5a)CSX            
Cisco CatOS 5.3 (5)CSX            
Cisco CatOS 5.3 (4)CSX            
Cisco CatOS 5.3 (3)CSX            
Cisco CatOS 5.3 (2)CSX            
Cisco CatOS 5.3 (1a)CSX            
Cisco CatOS 5.4 (4a)              
Cisco CatOS 5.4 (4)                
Cisco CatOS 5.4 (3)                
Cisco CatOS 5.4 (2a)              
Cisco CatOS 5.4 (2)                
Cisco CatOS 5.4 (1) - deferred    
Cisco CatOS 5.4 (1)                
Cisco CatOS 5.4                    
Cisco CatOS 5.5 (9)                
Cisco CatOS 5.5 (8a)CV            
Cisco CatOS 5.5 (8a)              
Cisco CatOS 5.5 (8)                
Cisco CatOS 5.5 (7a)              
Cisco CatOS 5.5 (7)                
Cisco CatOS 5.5 (6a)              
Cisco CatOS 5.5 (6)                
Cisco CatOS 5.5 (5)                
Cisco CatOS 5.5 (4b)              
Cisco CatOS 5.5 (4a)              
Cisco CatOS 5.5 (4)                
Cisco CatOS 5.5 (3)                
Cisco CatOS 5.5 (2)                
Cisco CatOS 5.5 (1a)              
Cisco CatOS 5.5 (13a)              
Cisco CatOS 5.5 (13)              
Cisco CatOS 5.5 (12a)              
Cisco CatOS 5.5 (12)              
Cisco CatOS 5.5 (11a)              
Cisco CatOS 5.5 (11)              
Cisco CatOS 5.5 (10a)              
Cisco CatOS 5.5 (10)              
Cisco CatOS 5.5 (1)                
Cisco CatOS 5.5                    
Cisco CatOS 6.1 (4b)              
Cisco CatOS 6.1 (4)                
Cisco CatOS 6.1 (3a)              
Cisco CatOS 6.1 (3)                
Cisco CatOS 6.1 (2a)              
Cisco CatOS 6.1 (2)                
Cisco CatOS 6.1 (1e)              
Cisco CatOS 6.1 (1d)              
Cisco CatOS 6.1 (1c)              
Cisco CatOS 6.1 (1b)              
Cisco CatOS 6.1 (1a)              
Cisco CatOS 6.1 (1)                
Cisco CatOS 6.1                    
Cisco CatOS 6.2 (3a)              
Cisco CatOS 6.2 (3)                
Cisco CatOS 6.2 (2a)              
Cisco CatOS 6.2 (2)                
Cisco CatOS 6.2 (1a)              
Cisco CatOS 6.2 (1)                
Cisco CatOS 6.3 (9)                
Cisco CatOS 6.3 (8.3)              
Cisco CatOS 6.3 (8)                
Cisco CatOS 6.3 (7)                
Cisco CatOS 6.3 (6)                
Cisco CatOS 6.3 (5)                
Cisco CatOS 6.3 (4a)              
Cisco CatOS 6.3 (4)                
Cisco CatOS 6.3 (3a)              
Cisco CatOS 6.3 (3)x1              
Cisco CatOS 6.3 (3)x              
Cisco CatOS 6.3 (3)                
Cisco CatOS 6.3 (2a)              
Cisco CatOS 6.3 (2)                
Cisco CatOS 6.3 (1a)              
Cisco CatOS 6.3 (1)                
Cisco CatOS 7.1 (2a)              
Cisco CatOS 7.1 (2)                
Cisco CatOS 7.1 (1a)              
Cisco CatOS 7.1 (1)                
Cisco CatOS 7.2 (2)                
Cisco CatOS 7.2 (1)                
Cisco CatOS 7.3 (2)                
Cisco CatOS 7.3 (1)                
Cisco CatOS 7.3                    
Cisco CatOS 7.4 (0.63)            
Cisco CatOS 7.4                    
Cisco CatOS 7.5 (1)                
Cisco CatOS 7.6 (1)
未影响系统
Cisco CatOS 5.5 (14)    
Cisco CatOS 5.5 (13.5)  
Cisco CatOS 6.3 (6)    
Cisco CatOS 6.3 (5.10)  
Cisco CatOS 7.2 (1)    
Cisco CatOS 7.2 (0.65)  
Cisco CatOS 7.4 (1)    
Cisco CatOS 7.4 (0.2)CLR
详细描述
Cisco Catalyst交换机处理数据包的方式上存在漏洞,当收到8次置了非标准TCP标记的连接请求时,交换机会停止响应以后对于相关服务的连接请求。攻击者可以利用此漏洞使Telnet、HTTP、SSH等服务对合法用户不可用。

解决方案
厂商已经提供了解决方案:

http://www.cisco.com/warp/public/707/cisco-sa-20030709-swtcp.shtml

相关信息
Cisco Security Advisory: Denial-of-Service of TCP-based Services in CatOS
http://www.cisco.com/warp/public/707/cisco-sa-20030709-swtcp.shtml