CVE-2016-1478: Input Validation
Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1 does not properly dequeue invalid NTP packets, which allows remote attackers to cause a denial of service (interface wedge) by sending many crafted NTP packets, aka Bug ID CSCva35619.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1478?
CVE-2016-1478 is classified as a denial of service vulnerability that can significantly impact the affected Cisco IOS versions.
How do I fix CVE-2016-1478?
To fix CVE-2016-1478, upgrade your Cisco IOS software to a version that is not susceptible to this vulnerability.
What are the affected versions for CVE-2016-1478?
The affected versions for CVE-2016-1478 include Cisco IOS 15.5(3)S3, 15.6(1)S2, 15.6(2)S1, and 15.6(2)T1.
What type of attack does CVE-2016-1478 allow?
CVE-2016-1478 allows remote attackers to conduct a denial of service attack by sending crafted NTP packets.
What does the bug ID CSCva35619 represent?
The bug ID CSCva35619 is associated with the vulnerability identified as CVE-2016-1478 and its details.