PT-2015-6492 · Cisco · Cisco Asr 5000

Published

2015-07-15

·

Updated

2016-12-28

·

CVE-2015-4273

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Cisco ASR 5000 devices with software versions 15.0(912), 15.0(935), and 15.0(938)
Description The issue allows remote attackers to cause a denial of service, specifically a Session Manager outage, by sending IP packets with malformed fields.
Recommendations For version 15.0(912), update to a fixed version to resolve the issue. For version 15.0(935), update to a fixed version to resolve the issue. For version 15.0(938), update to a fixed version to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-4273

Affected Products

Cisco Asr 5000