CVE-2014-3321: Input Validation
Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routing is enabled, allows remote attackers to cause a denial of service (chip and card hangs) via a series of crafted MPLS packets, aka Bug ID CSCuo91149.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3321?
CVE-2014-3321 has a high severity rating due to its potential to cause denial of service by making devices unresponsive.
How do I fix CVE-2014-3321?
To mitigate CVE-2014-3321, upgrade Cisco IOS XR to version 4.3.5 or later.
Is my device affected by CVE-2014-3321?
Devices running Cisco IOS XR versions 4.3.4 and earlier, particularly on ASR 9000 series, are vulnerable to CVE-2014-3321.
What are the risks associated with CVE-2014-3321?
Exploitation of CVE-2014-3321 can lead to significant network disruptions and downtime due to chip and card hangs.
When should I be concerned about CVE-2014-3321?
Immediate concern is warranted if you are using vulnerable versions of Cisco IOS XR as they can be exploited remotely.