CVE-2015-6289: High severity cisco ios vulnerability
Published Jun 23, 2016
·Updated
Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and 829 devices allows remote attackers to cause a denial of service (memory consumption) via crafted TCP packets on the SSH port, aka Bug ID CSCuu13476.
Affected Software
4 affected components
Cisco IOS=15.5\(3\)m
Cisco 800 Integrated Services Router
Cisco 819 Integrated Services Router
Cisco 829 Integrated Services Router
Event History
Jun 23, 2016
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6289?
CVE-2015-6289 is classified as a denial of service vulnerability.
2
How do I fix CVE-2015-6289?
To mitigate CVE-2015-6289, apply the recommended Cisco software updates that address the vulnerability.
3
What devices are affected by CVE-2015-6289?
CVE-2015-6289 affects Cisco IOS 15.5(3)M running on Integrated Services Router 800, 819, and 829 devices.
4
Can CVE-2015-6289 be exploited remotely?
Yes, CVE-2015-6289 can be exploited remotely by attackers using crafted TCP packets on the SSH port.
5
What impact does CVE-2015-6289 have on affected devices?
CVE-2015-6289 can lead to memory consumption on affected devices, resulting in a denial of service.