CVE-2013-5498: Input Validation
The PPTP-ALG component in CRS Carrier Grade Services Engine (CGSE) and ASR 9000 Integrated Service Module (ISM) in Cisco IOS XR allows remote attackers to cause a denial of service (module reset) via crafted packet streams, aka Bug ID CSCue91963.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5498?
CVE-2013-5498 has been classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2013-5498?
To mitigate CVE-2013-5498, it is recommended to apply the latest patches provided by Cisco for affected IOS XR versions.
What systems are affected by CVE-2013-5498?
CVE-2013-5498 affects the CRS Carrier Grade Services Engine and ASR 9000 Integrated Service Module within Cisco IOS XR.
What type of attack does CVE-2013-5498 enable?
CVE-2013-5498 allows remote attackers to conduct a denial of service attack that can reset the module.
Is a workaround available for CVE-2013-5498?
No specific workaround for CVE-2013-5498 has been provided, and applying security updates is the recommended approach.