CISCO as5350 crashes with nmap connect scan

From: Thomas Munn (munn@bigfoot.com)
Date: 10/28/02


Date: 28 Oct 2002 16:53:45 -0000
From: Thomas Munn <munn@bigfoot.com>
To: bugtraq@securityfocus.com


('binary' encoding is not supported, stored as-is)

I have managed to "reduplicate" at least five times the
following scenario with a cisco as5250, with firmwrare
12.2 (11t) release firmware of cisco:

nmap -dinsane -p 1-65535 ip.of.as5350 This causes a
"hard" lockup, and the device must be powered off in
order to have functionality restored to it.

Mentioned to PSIRT at cisco, they didn't do anything.

Sincerely,

Thomas J. Munn