CVE-2013-5478: Input Validation
Cisco IOS 15.0 through 15.3 and IOS XE 3.2 through 3.8, when a VRF interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via crafted UDP RSVP packets, aka Bug ID CSCuf17023.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5478?
CVE-2013-5478 has a high severity rating due to its potential to cause a denial of service on affected devices.
How do I fix CVE-2013-5478?
To fix CVE-2013-5478, upgrade your Cisco IOS or IOS XE software to a version that addresses this vulnerability.
Which Cisco IOS and IOS XE versions are affected by CVE-2013-5478?
CVE-2013-5478 affects Cisco IOS versions 15.0 through 15.3 and Cisco IOS XE versions 3.2 through 3.8.
What is the impact of CVE-2013-5478 on my network?
The impact of CVE-2013-5478 can lead to a denial of service, potentially disrupting network services by wedging the interface queue.
Is remote exploitation possible for CVE-2013-5478?
Yes, CVE-2013-5478 allows remote attackers to exploit the vulnerability through crafted UDP RSVP packets.