CVE-2011-3283: Input Validation
Published May 2, 2012
·Updated
Cisco Carrier Routing System 3.9.1 allows remote attackers to cause a denial of service (Metro subsystem crash) via a fragmented GRE packet, aka Bug ID CSCts14887.
Affected Software
1 affected component
Cisco Carrier Routing System=3.9.1
Remediation
Event History
May 2, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3283?
CVE-2011-3283 has a high severity rating as it can lead to a denial of service condition.
2
How do I fix CVE-2011-3283?
To fix CVE-2011-3283, upgrade your Cisco Carrier Routing System to a version that is not affected.
3
What causes the vulnerability in CVE-2011-3283?
CVE-2011-3283 is caused by the handling of fragmented GRE packets in the Metro subsystem.
4
Who is affected by CVE-2011-3283?
CVE-2011-3283 affects users of the Cisco Carrier Routing System version 3.9.1.
5
What type of attack is CVE-2011-3283 associated with?
CVE-2011-3283 is associated with remote denial of service attacks.