5.4
CVSSv2

CVE-2014-3347

Published: 28/08/2014 Updated: 29/08/2017
CVSS v2 Base Score: 5.4 | Impact Score: 6.9 | Exploitability Score: 4.9
VMScore: 481
Vector: AV:N/AC:H/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS 15.1(4)M2 on Cisco 1800 ISR devices, when the ISDN Basic Rate Interface is enabled, allows remote malicious users to cause a denial of service (device hang) by leveraging knowledge of the ISDN phone number to trigger an interrupt timer collision during entropy collection, leading to an invalid state of the hardware encryption module, aka Bug ID CSCul77897.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 15.1\\(4\\)m2

cisco 1802_integrated_service_router -

cisco 1803_integrated_service_router -

cisco 1801_integrated_service_router -

cisco 1811_integrated_service_router -

cisco 1812_integrated_service_router -

cisco 1841_integrated_service_router -

cisco 1861_integrated_service_router -

Vendor Advisories

Cisco 1800 Series Integrated Services Routers (ISR) contain a vulnerability in the hardware entropy collection module when the Integrated Services Digital Network (ISDN) Basic Rate Interface (BRI) is configured and connected to a public switched network This could allow an attacker with knowledge of the ISDN phone number of the affected device to ...