CVE-2011-1640

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
22/10/2011
Last modified:
11/04/2025

Description

The ethernet-lldp component in Cisco IOS 12.2 before 12.2(33)SXJ1 does not properly support a large number of LLDP Management Address (MA) TLVs, which allows remote attackers to cause a denial of service (device crash) via crafted LLDPDUs, aka Bug ID CSCtj22354.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:* 12.2 (including) 12.2\(33\)sxj1 (excluding)