CVE-2016-9205: High severity cisco ios xrv 9000 vulnerability
A vulnerability in the HTTP 2.0 request handling code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Event Management Service daemon (emsd) to crash, resulting in a denial of service (DoS) condition. More Information: CSCvb14425. Known Affected Releases: 6.1.1.BASE. Known Fixed Releases: 6.1.2.6i.MGBL 6.1.22.9i.MGBL 6.2.1.14i.MGBL.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9205?
CVE-2016-9205 is classified as a critical vulnerability due to its potential to cause a denial of service (DoS) condition.
How do I fix CVE-2016-9205?
To fix CVE-2016-9205, users should upgrade to a non-affected version of Cisco IOS XR Software.
What is the impact of CVE-2016-9205?
The impact of CVE-2016-9205 is that it could allow a remote attacker to crash the Event Management Service daemon.
Which Cisco IOS XR versions are affected by CVE-2016-9205?
Cisco IOS XR version 6.1.1 is the known affected release for CVE-2016-9205.
Can CVE-2016-9205 be exploited remotely?
Yes, CVE-2016-9205 can be exploited by an unauthenticated remote attacker.