7.8
CVSSv2

CVE-2013-5473

Published: 27/09/2013 Updated: 07/10/2013
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Memory leak in Cisco IOS 12.2, 15.1, and 15.2; IOS XE 3.4.2S up to and including 3.4.5S; and IOS XE 3.6.xS prior to 3.6.1S allows remote malicious users to cause a denial of service (memory consumption or device reload) via malformed IKEv1 packets, aka Bug ID CSCtx66011.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 15.2

cisco ios 15.1

cisco ios 12.2

cisco ios xe 3.4.3s

cisco ios xe 3.4.4s

cisco ios xe 3.4.5s

cisco ios xe 3.4.2s

cisco ios xe 3.6.0s

Vendor Advisories

A vulnerability in the Internet Key Exchange (IKE) protocol of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak that could lead to a device reload The vulnerability is due to incorrect handling of malformed IKE packets by the affected software An attacker could exploit this vulne ...