CVE-2013-4806
The OSPF implementation on HP JD9##A routers; HP J4###A, J484#B, J8###A, JD3##A, JE###A, and JF55#A switches; HP 3COM routers and switches; and HP H3C routers and switches does not consider the possibility of duplicate Link State ID values in Link State Advertisement (LSA) packets before performing operations on the LSA database, which allows remote authenticated users to cause a denial of service (routing disruption) or obtain sensitive packet information via a crafted LSA packet, a related issue to CVE-2013-0149.
Published:Aug 12, 2013
Last Modified:Apr 11, 2025
EPS:Aug 12, 2013
EPSS Score:0.00242
CVSS Score:7
Affected Products
Vendor
Product
Action
Vendor
Hp
Product
3com Router
Hp
3com Router
Vendor
Hp
Product
5500-24g-4sfp Hi Switch With 2 Interface Slots
Hp
5500-24g-4sfp Hi Switch With 2 Interface Slots
Vendor
Hp
Product
5500-24g-poe Ei Switch
Hp
5500-24g-poe Ei Switch
Vendor
Hp
Product
5500-24g-poe Si Switch
Hp
5500-24g-poe Si Switch
Vendor
Hp
Product
5500-24g-sfp Dc Ei Switch
Hp
5500-24g-sfp Dc Ei Switch
Vendor
Hp
Product
5500-24g-sfp Ei Switch
Hp
5500-24g-sfp Ei Switch
Vendor
Hp
Product
5500-24g Dc Ei Switch
Hp
5500-24g Dc Ei Switch
Vendor
Hp
Product
5500-24g Ei Switch
Hp
5500-24g Ei Switch
Vendor
Hp
Product
5500-24g Si Switch
Hp
5500-24g Si Switch
Vendor
Hp
Product
5500-48g-poe Ei Switch
Hp
5500-48g-poe Ei Switch
Vendor
Hp
Product
5500-48g-poe Si Switch
Hp
5500-48g-poe Si Switch
Vendor
Hp
Product
5500-48g Ei Switch
Hp
5500-48g Ei Switch
Vendor
Hp
Product
5500-48g Si Switch
Hp
5500-48g Si Switch
Vendor
Hp
Product
5500g-24 Ei 10\/100\/1000 No Power Supply Unit Switch
Hp
5500g-24 Ei 10\/100\/1000 No Power Supply Unit Switch
Vendor
Hp
Product
5500g-24 Ei Sfp No Power Supply Unit Switch
Hp
5500g-24 Ei Sfp No Power Supply Unit Switch
Vendor
Hp
Product
5500g-48 Ei 10\/100\/1000 No Power Supply Unit Switch
Hp
5500g-48 Ei 10\/100\/1000 No Power Supply Unit Switch
Vendor
Hp
Product
H3c Ethernet Switch
Hp
H3c Ethernet Switch
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
