CVE-2015-6351: Input Validation
Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices with software 19.1.0.61559 and 19.2.0 allow remote attackers to cause a denial of service (BGP process restart) via a crafted header in a BGP packet, aka Bug ID CSCuw65781.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6351?
CVE-2015-6351 has been classified with a high severity due to its potential to cause a denial of service on affected Cisco ASR 5500 devices.
How do I fix CVE-2015-6351?
To mitigate CVE-2015-6351, upgrade to Cisco ASR Software version 19.1.0.61560 or later, or 19.2.1 or later.
Which Cisco devices are affected by CVE-2015-6351?
CVE-2015-6351 affects Cisco ASR 5500 System Architecture Evolution Gateway devices running software versions 19.1.0.61559 and 19.2.0.
What type of attack does CVE-2015-6351 enable?
CVE-2015-6351 allows remote attackers to initiate a denial of service attack by leveraging vulnerabilities in the BGP process.
Is CVE-2015-6351 a remote or local vulnerability?
CVE-2015-6351 is classified as a remote vulnerability, allowing attackers to exploit it without local access to the device.