PT-2016-6928 · Cisco · Staros+1

Published

2016-11-03

·

Updated

2017-07-29

·

CVE-2016-6455

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Cisco ASR 5500 Series routers with Data Processing Card 2 (DPC2) versions 18.0 through 21.0.0
Description A vulnerability in the Slowpath of StarOS for Cisco ASR 5500 Series routers could allow an unauthenticated, remote attacker to cause a subset of the subscriber sessions to be disconnected, resulting in a partial denial of service (DoS) condition.
Recommendations For versions 18.0 through 18.7.4, update to version 18.7.4.65030 or later. For versions 18.7.4 through 19.5.0, update to version 19.5.0.65092 or later. For versions 19.5.0 through 20.2.3, update to version 20.2.3.64982 or later. For versions 20.2.3 through 20.3.M0, update to version 20.3.M0.64984 or later. For versions 20.3.M0 through 21.0.0, update to version 21.0.0.65256 or later. For all other affected versions, update to the corresponding fixed release as specified.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-6455

Affected Products

Cisco Asr 5500 Series
Staros