5
CVSSv2

CVE-2015-4201

Published: 20/06/2015 Updated: 28/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The Gateway General Packet Radio Service Support Node (GGSN) component on Cisco ASR 5000 devices with software 17.2.0.59184 and 18.0.L0.59219 allows remote malicious users to cause a denial of service (Session Manager restart) via an invalid TCP/IP header, aka Bug ID CSCut68058.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco asr 5000 series software 17.2.0.59184

cisco asr 5000 series software 18.0.l059219

Vendor Advisories

A vulnerability in the TCP packet input handler of the Cisco Gateway GPRS Support Node (GGSN) could allow an unauthenticated, remote attacker to cause a reset of the Session Manager application The vulnerability is due to improper input validation of the length fields of the TCP/IP header An attacker could exploit this vulnerability by sending a ...