First published: Tue Oct 28 2014(Updated: )
Cisco IOS 15.4(3)S0b on ASR901 devices makes incorrect decisions to use the CPU for IPv4 packet processing, which allows remote attackers to cause a denial of service (BGP neighbor flapping) by sending many crafted IPv4 packets, aka Bug ID CSCuo29736.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Puppet Cisco IOS | =15.4\(3\)s0b | |
Cisco ASR 901 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3293 is considered a high severity vulnerability that can lead to denial of service due to BGP neighbor flapping.
To fix CVE-2014-3293, it is recommended to upgrade to a version of Cisco IOS that does not contain the vulnerability.
CVE-2014-3293 affects Cisco IOS 15.4(3)S0b on ASR901 devices.
The impact of CVE-2014-3293 is that it allows remote attackers to disrupt network services through denial of service.
There are no specific workarounds for CVE-2014-3293; updating to a safe version is the best mitigation.