First published: Thu Jul 16 2015(Updated: )
The Packet Data Network Gateway (aka PGW) component on Cisco ASR 5000 devices with software 18.0.0.59167 and 18.0.0.59211 allows remote attackers to cause a denial of service via a malformed header in a GTPv2 packet, aka Bug ID CSCut11534.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASR 5000 Series Aggregation Services Routers | =18.0.0.59167 | |
Cisco ASR 5000 Series Aggregation Services Routers | =18.0.0.59211 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4275 has a critical severity level due to its ability to cause a denial of service.
To remediate CVE-2015-4275, upgrade Cisco ASR 5000 to a version later than 18.0.0.59211.
CVE-2015-4275 affects Cisco ASR 5000 series devices running versions 18.0.0.59167 and 18.0.0.59211.
CVE-2015-4275 allows remote attackers to launch a denial of service attack using malformed GTPv2 packets.
CVE-2015-4275 is a remote vulnerability that can be exploited from outside the affected network.