First published: Tue May 20 2014(Updated: )
The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum96282.
Credit: ykramarz@cisco.com psirt@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3273 has a severity rating that indicates it can lead to a denial of service due to device reloads.
To fix CVE-2014-3273, users should apply the latest security updates or patches provided by Cisco for their IOS version.
CVE-2014-3273 affects devices running vulnerable versions of Cisco IOS that are configured to accept LLDP packets.
CVE-2014-3273 involves a remote denial of service attack that is executed via malformed LLDP packets.
Disabling LLDP on affected Cisco devices can serve as a temporary workaround for CVE-2014-3273.