7.8
CVSSv2

CVE-2014-3354

Published: 25/09/2014 Updated: 29/08/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS 12.0, 12.2, 12.4, 15.0, 15.1, 15.2, and 15.3 and IOS XE 2.x and 3.x prior to 3.7.4S; 3.2.xSE and 3.3.xSE prior to 3.3.2SE; 3.3.xSG and 3.4.xSG prior to 3.4.4SG; and 3.8.xS, 3.9.xS, and 3.10.xS prior to 3.10.1S allow remote malicious users to cause a denial of service (device reload) via malformed RSVP packets, aka Bug ID CSCui11547.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.4

cisco ios 15.0

cisco ios xe 2.1.2

cisco ios xe 2.2

cisco ios xe 2.3.2

cisco ios xe 2.4

cisco ios xe 2.5.0

cisco ios xe 2.5.1

cisco ios xe 2.6.2

cisco ios xe 3.1.0s

cisco ios xe 3.10.0s

cisco ios xe 3.10.1s

cisco ios xe 3.1s\\(.3\\)

cisco ios xe 3.2.00.xo.15.0\\(2\\)xo

cisco ios xe 3.2.2sg

cisco ios xe 3.2.3sg

cisco ios xe 3.3.1sg

cisco ios xe 3.3.2s

cisco ios xe 3.4.0sg

cisco ios xe 3.4.1s

cisco ios xe 3.4.5s

cisco ios xe 3.4.xs

cisco ios xe 3.5.0e

cisco ios xe 3.5.0s

cisco ios xe 3.5s\\(.0\\)

cisco ios xe 3.5s\\(.1\\)

cisco ios xe 3.6s\\(.2\\)

cisco ios xe 3.7.0s

cisco ios xe 3.7.1s

cisco ios xe 3.2.2se

cisco ios xe 3.2.3se

cisco ios xe 3.9s\\(.0\\)

cisco ios xe 3.9s\\(.1\\)

cisco ios 15.1

cisco ios 15.2

cisco ios xe 2.2.1

cisco ios xe 2.2.2

cisco ios xe 2.4.0

cisco ios xe 2.4.1

cisco ios xe 2.5.2

cisco ios xe 2.6\\(.0\\)

cisco ios xe 3.1.0sg

cisco ios xe 3.1.1s

cisco ios xe 3.10.1s1

cisco ios xe 3.10.2s

cisco ios xe 3.2.0s

cisco ios xe 3.2.0sg

cisco ios xe 3.2.4sg

cisco ios xe 3.2s\\(.0\\)

cisco ios xe 3.3.3s

cisco ios xe 3.3s\\(.0\\)

cisco ios 15.3

cisco ios xe 2.1

cisco ios xe 2.2.3

cisco ios xe 2.3

cisco ios xe 2.4.2

cisco ios xe 2.4.3

cisco ios xe 2.6\\(.1\\)

cisco ios xe 2.6\\(.2\\)

cisco ios xe 3.1.1sg

cisco ios xe 3.1.2s

cisco ios xe 3.12s

cisco ios xe 3.1s\\(.0\\)

cisco ios xe 3.2.0xo

cisco ios xe 3.2.1s

cisco ios xe 3.2s\\(.1\\)

cisco ios xe 3.2s\\(.2\\)

cisco ios xe 3.3.0s

cisco ios xe 3.3s\\(.1\\)

cisco ios xe 3.3s\\(.2\\)

cisco ios xe 3.4.2sg

cisco ios xe 3.4.3s

cisco ios xe 3.4s\\(.3\\)

cisco ios xe 3.4s\\(.4\\)

cisco ios xe 3.5.2e

cisco ios xe 3.5.2s

cisco ios xe 3.6.1s

cisco ios xe 3.6.2s

cisco ios xe 3.7s\\(.1\\)

cisco ios xe 3.7s\\(.2\\)

cisco ios xe 3.8.0s

cisco ios xe 3.8s\\(.0\\)

cisco ios xe 3.4.1sg

cisco ios xe 3.4.2s

cisco ios xe 3.4s\\(.0\\)

cisco ios xe 3.4s\\(.1\\)

cisco ios xe 3.4s\\(.2\\)

cisco ios xe 3.5.1e

cisco ios xe 3.5.1s

cisco ios xe 3.5s\\(.2\\)

cisco ios xe 3.6.0s

cisco ios xe 3.7.2s

cisco ios xe 3.7s\\(.0\\)

cisco ios xe 3.3.0se

cisco ios xe 3.3.1se

cisco ios xe 3.9s\\(.2\\)

cisco ios xe 3.10s\\(.0\\)

cisco ios 12.0

cisco ios 12.2

cisco ios xe 2.1.0

cisco ios xe 2.1.1

cisco ios xe 2.3.0

cisco ios xe 2.3.1

cisco ios xe 2.3.1t

cisco ios xe 2.4.4

cisco ios xe 2.5\\(.0\\)

cisco ios xe 2.6.0

cisco ios xe 2.6.1

cisco ios xe 3.1.3s

cisco ios xe 3.1.4s

cisco ios xe 3.10

cisco ios xe 3.1s\\(.1\\)

cisco ios xe 3.1s\\(.2\\)

cisco ios xe 3.2.1sg

cisco ios xe 3.2.2s

cisco ios xe 3.3.0sg

cisco ios xe 3.3.1s

cisco ios xe 3.4.0as

cisco ios xe 3.4.0s

cisco ios xe 3.4.3sg

cisco ios xe 3.4.4s

cisco ios xe 3.4s\\(.5\\)

cisco ios xe 3.4s\\(.6\\)

cisco ios xe 3.5.xs

cisco ios xe 3.5e

cisco ios xe 3.6s\\(.0\\)

cisco ios xe 3.6s\\(.1\\)

cisco ios xe 3.7s\\(.3\\)

cisco ios xe 3.2.1se

cisco ios xe 3.8s\\(.1\\)

cisco ios xe 3.8s\\(.2\\)

Vendor Advisories

A vulnerability in the implementation of the Resource Reservation Protocol (RSVP) in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker cause the device to reload This vulnerability could be exploited repeatedly to cause an extended denial of service (DoS) condition Cisco has released software updates th ...