>> Cisco IOS Intrusion Prevention System Denial of Service and Security Bypass Issues
Title : Cisco IOS Intrusion Prevention System Denial of Service and Security Bypass Issues VUPEN ID : VUPEN/ADV-2007-0597 CVE ID : CVE-2007-0917 - CVE-2007-0918
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-02-14
Technical Description
Two vulnerabilities have been identified in Cisco IOS, which could be exploited by attackers to bypass security restrictions or cause a denial of service.
The first issue is due to an error within various IPS signatures when processing certain network traffic via regular expressions, which could be exploited by attackers to bypass signature inspection by sending malicious network traffic as IP fragments.
The second vulnerability is due to an error within the "ATOMIC.TCP" signature engine when processing certain network traffic via regular expressions, which could be exploited by attackers to crash a vulnerable device, creating a denial of service condition.