CVE-2014-3322

Published Jul 24, 2014

Last updated 18 days ago

Overview

Description
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
Source
psirt@cisco.com
NVD status
Modified
Products
ios_xr, asr_9000_rsp440_router, asr_9001, asr_9006, asr_9010, asr_9904, asr_9912, asr_9922

Risk scores

CVSS 2.0

Type
Primary
Base score
6.1
Impact score
6.9
Exploitability score
6.5
Vector string
AV:A/AC:L/Au:N/C:N/I:N/A:C

Weaknesses

nvd@nist.gov
CWE-20

Social media

Hype score
Not currently trending

Configurations