CVE-2013-6693: Buffer Overflow
The MLDP implementation in Cisco IOS 15.3(3)S and earlier on 7600 routers, when many VRFs are configured, allows remote attackers to cause a denial of service (chunk corruption and device reload) by establishing many multicast flows, aka Bug ID CSCue22345.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6693?
CVE-2013-6693 has a medium severity rating due to the potential for denial of service attacks on affected Cisco devices.
How do I fix CVE-2013-6693?
To mitigate CVE-2013-6693, upgrade to Cisco IOS version 15.3(4)S or later.
Which devices are affected by CVE-2013-6693?
CVE-2013-6693 primarily affects Cisco IOS 15.3(3)S and earlier versions running on Cisco 7600 routers.
What kind of attack does CVE-2013-6693 allow?
CVE-2013-6693 allows remote attackers to cause a denial of service by establishing numerous multicast flows.
Is there any workaround for CVE-2013-6693?
There are no specific workarounds for CVE-2013-6693; the recommended action is to apply the appropriate software upgrade.