CVE-2015-4273: Input Validation
The Packet Data Network Gateway (aka PGW) component on Cisco ASR 5000 devices with software 15.0(912), 15.0(935), and 15.0(938) allows remote attackers to cause a denial of service (Session Manager outage) via malformed fields in an IP packet, aka Bug ID CSCut38476.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4273?
CVE-2015-4273 is classified as a denial of service vulnerability, potentially impacting session management on affected devices.
How do I fix CVE-2015-4273?
To mitigate CVE-2015-4273, upgrade the Cisco ASR 5000 software to the latest available version beyond 15.0(938).
What devices are affected by CVE-2015-4273?
CVE-2015-4273 affects Cisco ASR 5000 devices running versions 15.0(912), 15.0(935), and 15.0(938).
Can CVE-2015-4273 be exploited remotely?
Yes, CVE-2015-4273 can be exploited remotely by attackers through malformed IP packet fields.
What is the potential impact of CVE-2015-4273?
The potential impact of CVE-2015-4273 is a denial of service condition that may lead to a session manager outage on the affected Cisco devices.