In each case the vulnerability could potentially be exploited to cause the device that uses the Cisco IOS to reload, which could lead to a sustained DoS condition.
"Since devices running IOS may transit traffic for a number of other networks, the secondary impacts of a Denial of Service may be severe," the US-CERT advisory states.
The IPv6 problem is concerned with "crafted" IPv6 packets, and can be exploited even if the router is not running this protocol.
The BGP packet vulnerability, like the MPLS and IPv6 vulnerabilities, is rooted in a malformed packet issue. The malformed packets may not necessarily come from a malicious source, according to Cisco's advisory. Also, the bug may be triggered by other means that are not considered remotely exploitable.
Cisco has, of course, been quick to release fixes.
Downloads and Drivers
From the Forums
Subscribe to TechSpot
Get free exclusive content, learn about new features and breaking tech news.