7.8
CVSSv2

CVE-2015-4291

Published: 01/08/2015 Updated: 21/08/2015
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS XE 2.x prior to 2.4.3 and 2.5.x prior to 2.5.1 on ASR 1000 devices allows remote malicious users to cause a denial of service (Embedded Services Processor crash) via a crafted series of fragmented (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCtd72617.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 2.2.1

cisco ios xe 2.1.0

cisco ios xe 2.4.0

cisco ios xe 2.3.0

cisco ios xe 2.3.2

cisco ios xe 2.3.1t

cisco ios xe 2.3.0t

cisco ios xe 2.4.1

cisco ios xe 2.2.2

cisco ios xe 2.1.1

cisco ios xe 2.5.0

cisco ios xe 2.2.3

cisco ios xe 2.1.2