>> Cisco IOS EIGRP Remote Denial of Service and Information Disclosure
Title : Cisco IOS EIGRP Remote Denial of Service and Information Disclosure VUPEN ID : VUPEN/ADV-2005-3008 CVE ID : CVE-2005-4436 - CVE-2005-4437
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-12-20
Technical Description
Two vulnerabilities were identified in Cisco IOS, which could be exploited by attackers to gain knowledge of sensitive information or cause a denial of service.
The first issue is due to an error in the EIGRP (Enhanced Interior Gateway Routing Protocol) implementation that does not properly handle spoofed neighbor announcement with either mismatched "k" values or "Goodbye Message" TLV, which could result in routing neighbor relationships being torn down and reformed causing a denial of service condition.
The second flaw is due to an error when processing illegitimate "hello" packets in an EIGRP authenticated autonomous system (AS), which could be exploited by malicious users to cause a denial of service or obtain sensitive information about the EIGRP domain.