First published: Thu Oct 31 2013(Updated: )
Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending malformed EoGRE packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCuf08269.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE Software | =3.9.0s | |
Cisco IOS XE Software | =3.9.1s | |
Cisco ASR 1001 | ||
Cisco ASR 1002 Fixed Router | ||
Cisco ASR 1002-X | ||
Cisco ASR 1004 | ||
Cisco ASR 1006 | ||
Cisco ASR 1023 Router |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5547 has a high severity rating due to its potential to cause a denial of service through device reload.
To fix CVE-2013-5547, upgrade your Cisco IOS XE device to version 3.9.2S or later.
CVE-2013-5547 affects various Cisco ASR 1000 series devices running IOS XE versions 3.9.0S and 3.9.1S.
CVE-2013-5547 enables remote attackers to cause a denial of service by sending malformed EoGRE packets.
The impact of CVE-2013-5547 can lead to unexpected device reloads, disrupting network operations.