Cisco ASR 1000 devices with software prior to 3.8S, when BDI routing is enabled, allow remote malicious users to cause a denial of service (device reload) via crafted (1) broadcast or (2) multicast ICMP packets with fragmentation, aka Bug ID CSCub55948.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco ios xe |
||
cisco ios xe 3.6.0s |
||
cisco ios xe 3.6.1s |
||
cisco ios xe 3.6.2s |
||
cisco ios xe 3.6s(.0) |
||
cisco ios xe 3.6s(.1) |
||
cisco ios xe 3.6s(.2) |
||
cisco ios xe 3.7.0s |
||
cisco ios xe 3.7.1s |
||
cisco ios xe 3.7.2s |
||
cisco ios xe 3.7s(.0) |
||
cisco asr 1001 - |
||
cisco asr 1002 - |
||
cisco asr 1002-x - |
||
cisco asr 1002 fixed router - |
||
cisco asr 1004 - |
||
cisco asr 1006 - |
||
cisco asr 1013 - |
||
cisco asr 1023 router - |