First published: Wed Dec 23 2015(Updated: )
Cisco IOS XE 16.1.1 allows remote attackers to cause a denial of service (device reload) via a packet with the 00-00-00-00-00-00 source MAC address, aka Bug ID CSCux48405.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE Web UI | =16.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6431 is rated as a critical vulnerability that allows remote denial of service attacks.
To mitigate CVE-2015-6431, upgrade to Cisco IOS XE version 16.1.2 or later.
CVE-2015-6431 affects devices running Cisco IOS XE version 16.1.1.
Yes, CVE-2015-6431 can be exploited remotely by sending specially crafted packets.
Exploitation of CVE-2015-6431 can lead to device reloads, resulting in denial of service.