CVE-2016-1399: High severity puppet cisco ios vulnerability
The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 15.2(2)EB1 on Industrial Ethernet 5000 devices allows remote attackers to cause a denial of service (packet data corruption) via crafted IPv4 ICMP packets, aka Bug ID CSCuy13431.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1399?
CVE-2016-1399 has a Medium severity level, indicating potential impact on network availability.
How do I fix CVE-2016-1399?
To fix CVE-2016-1399, upgrade to a non-vulnerable version of Cisco IOS.
What type of devices are affected by CVE-2016-1399?
CVE-2016-1399 affects Cisco Industrial Ethernet 4000 and 5000 devices running specific versions of Cisco IOS.
What vulnerability does CVE-2016-1399 exploit?
CVE-2016-1399 exploits a flaw in the packet-processing microcode which can lead to denial of service due to packet data corruption.
Can CVE-2016-1399 be exploited remotely?
Yes, CVE-2016-1399 can be exploited remotely by sending crafted IPv4 ICMP packets.