CVE-2014-3322: Input Validation
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3322?
CVE-2014-3322 has a high severity rating due to its potential to cause denial of service on affected devices.
How do I fix CVE-2014-3322?
To address CVE-2014-3322, upgrade to a Cisco IOS XR version later than 4.3(2) that is not affected by this vulnerability.
Which devices are impacted by CVE-2014-3322?
CVE-2014-3322 affects Cisco IOS XR 4.3(.2) and earlier on ASR 9000 series routers.
What types of packets can exploit CVE-2014-3322?
CVE-2014-3322 can be exploited by sending malformed IPv4 or IPv6 packets.
What are the potential impacts of CVE-2014-3322?
The exploitation of CVE-2014-3322 can lead to hangs on the chip and card, effectively causing a denial of service.