First published: Thu Apr 20 2006(Updated: )
Cisco IOS XR, when configured for Multi Protocol Label Switching (MPLS) and running on Cisco CRS-1 or Cisco 12000 series routers, allows remote attackers to cause a denial of service (Line card crash) via certain MPLS packets, as identified by Cisco bug ID CSCsc77475.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XRv 9000 | =3.0.1 | |
Cisco IOS XRv 9000 | =3.1.0 | |
Cisco IOS XRv 9000 | =3.2 | |
Cisco IOS XRv 9000 | =3.2.1 | |
Cisco IOS XRv 9000 | =3.2.2 | |
Cisco IOS XRv 9000 | =3.2.3 | |
Cisco IOS XRv 9000 | =3.2.3 | |
Cisco IOS XRv 9000 | =3.2.4 | |
Cisco IOS XRv 9000 | =3.2.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1927 is classified as a denial of service vulnerability that can lead to line card crashes in affected Cisco devices.
To mitigate CVE-2006-1927, upgrade to a secure version of Cisco IOS XR that patches this vulnerability.
CVE-2006-1927 affects Cisco routers configured for MPLS, specifically the Cisco CRS-1 and Cisco 12000 series running certain versions of IOS XR.
Yes, CVE-2006-1927 can be exploited remotely through specially crafted MPLS packets.
If using an affected version, it is recommended to apply the necessary updates and implement security best practices to prevent exploitation.