CVE-2013-5553: High severity Cisco IOS vulnerability
Published Nov 8, 2013
·Updated
Multiple memory leaks in Cisco IOS 15.1 before 15.1(4)M7 allow remote attackers to cause a denial of service (memory consumption or device reload) by sending a crafted SIP message over (1) IPv4 or (2) IPv6, aka Bug IDs CSCuc42558 and CSCug25383.
Affected Software
1 affected component
Cisco IOS=15.1
Event History
Nov 8, 2013
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-5553?
CVE-2013-5553 has a high severity rating due to its potential to cause denial of service through remote attacks.
2
How do I fix CVE-2013-5553?
To fix CVE-2013-5553, update your Cisco IOS to a version later than 15.1(4)M7.
3
What types of attacks are possible through CVE-2013-5553?
CVE-2013-5553 allows remote attackers to exploit memory leaks leading to device reloads or memory consumption via crafted SIP messages.
4
Which versions of Cisco IOS are affected by CVE-2013-5553?
CVE-2013-5553 affects Cisco IOS version 15.1 prior to 15.1(4)M7.
5
Is remote exploitation possible with CVE-2013-5553?
Yes, CVE-2013-5553 can be exploited remotely by sending specially crafted SIP messages.