CVE-2014-2107: Input Validation
Cisco IOS 12.2 and 15.0 through 15.3, when used with the Kailash FPGA before 2.6 on RSP720-3C-10GE and RSP720-3CXL-10GE devices, allows remote attackers to cause a denial of service (route switch processor outage) via crafted IP packets, aka Bug ID CSCug84789.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2107?
CVE-2014-2107 has a critical severity rating due to its potential to cause a denial of service on affected devices.
How do I fix CVE-2014-2107?
To fix CVE-2014-2107, upgrade to a Cisco IOS version that is not affected by this vulnerability.
What devices are affected by CVE-2014-2107?
CVE-2014-2107 affects Cisco IOS versions 12.2 and 15.0 through 15.3 running on RSP720-3C-10GE and RSP720-3CXL-10GE devices.
Can CVE-2014-2107 be exploited remotely?
Yes, CVE-2014-2107 can be exploited remotely, allowing attackers to craft specific IP packets to trigger the vulnerability.
What type of attack does CVE-2014-2107 enable?
CVE-2014-2107 enables denial of service attacks that can lead to outages of the route switch processor.