First published: Wed Oct 05 2016(Updated: )
Cisco IOS XR 5.2.2 allows remote attackers to cause a denial of service (process restart) via a crafted OSPF Link State Advertisement (LSA) update, aka Bug ID CSCvb05643.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XRv 9000 | =5.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6421 has been classified as a high severity vulnerability due to its potential to cause a denial of service.
To fix CVE-2016-6421, upgrade to a version of Cisco IOS XR that is not affected by this vulnerability.
CVE-2016-6421 affects Cisco IOS XR version 5.2.2 specifically.
CVE-2016-6421 enables remote attackers to cause a denial of service by exploiting a crafted OSPF Link State Advertisement update.
There are no known workarounds for CVE-2016-6421; upgrading is the recommended course of action.