CVE-2014-3343: Input Validation
Published Sep 10, 2014
·Updated
Cisco IOS XR 5.1 allows remote attackers to cause a denial of service (DHCPv6 daemon crash) via a malformed DHCPv6 packet, aka Bug ID CSCuo59052.
Affected Software
1 affected component
Cisco IOS XR=5.1.0
Event History
Sep 10, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-3343?
CVE-2014-3343 has a severity rating that can lead to a denial of service due to a crash of the DHCPv6 daemon.
2
How do I fix CVE-2014-3343?
To fix CVE-2014-3343, upgrade to a patched version of Cisco IOS XR that addresses the vulnerability.
3
What versions of Cisco IOS are affected by CVE-2014-3343?
CVE-2014-3343 specifically affects Cisco IOS XR version 5.1.0.
4
What type of attack does CVE-2014-3343 enable?
CVE-2014-3343 enables remote attackers to execute a denial of service attack through malformed DHCPv6 packets.
5
Is CVE-2014-3343 exploitable remotely?
Yes, CVE-2014-3343 is exploitable remotely as it targets the DHCPv6 daemon.