Security Advisory

CVE-2008-3803

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2008-09-26 16:00:00
Last updated 2024-08-07 09:52:59
Assigner cisco
State PUBLISHED

Description

A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a corrupted route target (RT) to be used, which allows remote attackers to read traffic from other VPNs in opportunistic circumstances.