
405
Cross-Platform Release Notes for Cisco IOS Release 12.0S
OL-1617-14 Rev. Q0
Caveats
Resolved Caveats—Cisco IOS Release 12.0(33)S3
Conditions: A device configured for SSL VPN may stop accepting any new SSL VPN connections
due to a vulnerability in the processing of new TCP connections for SSL VPN services. If the debug
ip tcp transactions command is enabled and this vulnerability is triggered, debug messages with
connection queue limit reached will be observed.
Workaround: There is no workaround.
• CSCso60442
Symptoms: A crash occurs.
Conditions: This symptom is observed when the show buffers interface dump command is entered.
Workaround: There is no workaround.
• CSCso84392
Symptoms: In MVPN, on the source PE, multicast packets are punted to the RP CPU, and some
packets are also dropped.
Conditions: Ingress E3 and egress E5, and the TUNSEQ error message appears.
Workaround: There is no workaround.
• CSCso92169
Symptoms: A traceback is seen on the E3 and E5 line cards.
Conditions: This symptom is observed under normal traffic conditions after a clear ip route *
command is issued.
Workaround: There is no workaround.
• CSCsq13938
Symptoms: In Cisco IOS software that is running the Border Gateway Protocol (BGP), the router
may reload if BGP show commands are executed while the BGP configuration is being removed.
Conditions: This problem may happen only if the BGP show command is started and suspended by
auto-more before the BGP-related configuration is removed, and if the BGP show command is
continued (for example by pressing the SPACE bar) after the configuration has been removed. This
bug affects BGP show commands related to VPNv4 address family. In each case the problem only
happens if the deconfiguration removes objects that are being utilized by the show command.
Removing unrelated BGP configuration has no effect.
This bug is specific to MPLS-VPN scenarios (CSCsj22187 fixes this issue for other
address-families).
Workaround: Terminate any paused BGP show commands before beginning operations to remove
BGP-related configuration. Pressing “q” to abort suspended show commands, rather SPACE to
continue them, may avoid problems in some scenarios.
• CSCsq31233
Symptoms: The following error messages are received on a 1xoc12 eng3 line card:
SEC 8:May 16 06:41:09.216: %IDBINDEX_SYNC-3-IDBINDEX_ENTRY_SET: Cannot set entry to
interface index table: "", 73 -Process= "RP Standby", ipl= 0, pid= 63 -Traceback=
20A640 20A748 11D29D8 27F7A8 281F80 439B64 436AC4 5187B8 4FF360 5006FC 523434 240B7C
5C0514 5C0A14 34BC74 350B0C SEC 8:May 16 06:41:09.216: %FIB-2-HW_IF_INDEX_ILLEGAL:
Attempt to create CEF interface for Serial4/0.1/1:1 with illegal index: -1 -Traceback=
20A640 20A748 178438 17A198 17A7E8 17A980 439C1C 436ACC 5187B8 4FF360 5006FC 523434
240B7C 5C0514 5C0A14 34BC74 SEC 8:May 16 06:41:09.216: %EERP-2-UIDB_ERR: Unable to
allocate resources. Null fibhwidb for free 0
Conditions: This symptom is observed when either of the two tasks mentioned below is performed
in the specific order and HA is configured in SSO mode.
Kommentare zu diesen Handbüchern