The TCP reassembly feature in Cisco IOS XE 3.7 prior to 3.7.3S and 3.8 prior to 3.8.1S on 1000 ASR devices allows remote malicious users to cause a denial of service (device reload) via large TCP packets that are processed by the (1) NAT or (2) ALG component, aka Bug ID CSCud72509.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco ios xe 3.7.0s |
||
cisco ios xe 3.7.1s |
||
cisco ios xe 3.7.2s |
||
cisco ios xe 3.8.0s |
||
cisco asr 1001 - |
||
cisco asr 1002 - |
||
cisco asr 1002-x - |
||
cisco asr 1004 - |
||
cisco asr 1006 - |
||
cisco asr 1023 router - |