7.8
CVSSv2

CVE-2011-1651

Published: 31/05/2011 Updated: 07/09/2011
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS XR 3.9.x and 4.0.x prior to 4.0.3 and 4.1.x prior to 4.1.1, when an SPA interface processor is installed, allows remote malicious users to cause a denial of service (device reload) via a crafted IPv4 packet, aka Bug ID CSCto45095.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xr 3.0

cisco ios xr 3.9.1

cisco ios xr 4.0.0

cisco ios xr 4.0.1

cisco ios xr 4.0.2

cisco ios xr 4.1

cisco ios xr 3.9.0

cisco ios xr 3.9.2

Vendor Advisories

Cisco IOS XR Software Releases 390, 391, 392, 400, 401, 402, and 410 are affected by a vulnerability that an unauthenticated, remote user could use to trigger a reload of the Shared Port Adapters (SPA) Interface Processor by sending specific IP version 4 (IPv4) packets to an affected device Cisco has released free Software Maintenanc ...