cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
467
Views
0
Helpful
2
Replies

Crafted ICMP Messages vulnerability on a 7200 router

benlambrey
Level 1
Level 1

Hi,

I have question regarding the advisory "Crafted ICMP Messages Can Cause Denial of Service"

http://www.cisco.com/warp/public/707/cisco-sa-20050412-icmp.shtml

We're running a Cisco 7200 router "IOS (tm) 7200 Software (C7200-P-M), Version 12.1(19), RELEASE SOFTWARE (fc1)"

It's unclear to me if our router is vulnerable to the above bug

or not.

Who can clarify this to me?

Thanks.

Ben.

2 Replies 2

thisisshanky
Level 11
Level 11

Ben,

All Cisco IOS versions are vulnerable to this attack. It depends on what protocols/apps you are running on the router. For example if the router initiates a TCP/IP connection to another device, then your router will be vulnerable to this attack. If you use IPSEC or DMVPN or GRE tunnels, you are vulnerable. Paste a show run with important info masked, and we can see from there if your router is affected or not.

Sankar Nair
UC Solutions Architect
Pacific Northwest | CDW
CCIE Collaboration #17135 Emeritus

Hi,

Thanks for your answer, but 'show run' is not a valid command on a 7200.

What information should I provide?

Ben.

Review Cisco Networking for a $25 gift card