7.5
CVSSv3

CVE-2016-1348

Published: 26/03/2016 Updated: 03/12/2016
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco IOS 15.0 up to and including 15.5 and IOS XE 3.3 up to and including 3.16 allow remote malicious users to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 3.16s_3.16.0cs

cisco ios xe 3.15s_3.15.1cs

cisco ios xe 3.15s_3.15.2s

cisco ios xe 3.6e_3.6.2e

cisco ios xe 3.7e_3.7.0e

cisco ios xe 3.14s_3.14.3s

cisco ios xe 3.14s_3.14.0s

cisco ios xe 3.12s_3.12.3s

cisco ios xe 3.3xo_3.3.2xo

cisco ios xe 3.3xo_3.3.1xo

cisco ios xe 3.7s_3.7.6s

cisco ios xe 3.7s_3.7.5s

cisco ios xe 3.10s_3.10.2s

cisco ios xe 3.10s_3.10.1s

cisco ios xe 3.9s_3.9.0as

cisco ios xe 3.9s_3.9.1as

cisco ios xe 3.13s_3.13.2as

cisco ios xe 3.10s_3.10.1xbs

cisco ios xe 3.16s_3.16.0s

cisco ios xe 3.15s_3.15.1s

cisco ios xe 3.14s_3.14.2s

cisco ios xe 3.11s_3.11.4s

cisco ios xe 3.13s_3.13.2s

cisco ios xe 3.13s_3.13.1s

cisco ios xe 3.12s_3.12.2s

cisco ios xe 3.12s_3.12.1s

cisco ios xe 3.10s_3.10.4s

cisco ios xe 3.10s_3.10.3s

cisco ios xe 3.10s_3.10.0s

cisco ios xe 3.5e_3.5.0e

cisco ios xe 3.3xo_3.3.0xo

cisco ios xe 3.7s_3.7.3s

cisco ios xe 3.7s_3.7.2s

cisco ios xe 3.5s_3.5.1s

cisco ios xe 3.5s_3.5.0s

cisco ios 15.2\\\\\\(1\\\\\\)sy1a

cisco ios 15.2\\\\\\(3m\\\\\\)e2

cisco ios 15.4\\\\\\(2\\\\\\)s3

cisco ios 15.4\\\\\\(1\\\\\\)s4

cisco ios 15.2\\\\\\(3a\\\\\\)e

cisco ios 15.2\\\\\\(3\\\\\\)e2

cisco ios 15.1\\\\\\(2\\\\\\)sy4a

cisco ios 15.5\\\\\\(1\\\\\\)s1

cisco ios 15.2\\\\\\(4\\\\\\)e

cisco ios 15.4\\\\\\(3\\\\\\)s2

cisco ios 15.1\\\\\\(2\\\\\\)sy4

cisco ios 15.2\\\\\\(1\\\\\\)e3

cisco ios 15.2\\\\\\(3\\\\\\)e

cisco ios 15.4\\\\\\(1\\\\\\)s1

cisco ios 15.1\\\\\\(1\\\\\\)sy3

cisco ios 15.3\\\\\\(3\\\\\\)s4

cisco ios xe 3.8e_3.8.0e

cisco ios xe 3.7s_3.7.2ts

cisco ios xe 3.16s_3.16.1as

cisco ios xe 3.13s_3.13.4s

cisco ios xe 3.12s_3.12.4s

cisco ios xe 3.13s_3.13.3s

cisco ios xe 3.7s_3.7.4as

cisco ios xe 3.13s_3.13.0as

cisco ios xe 3.6e_3.6.3e

cisco ios xe 3.16s_3.16.1s

cisco ios xe 3.7e_3.7.1e

cisco ios xe 3.6e_3.6.2ae

cisco ios xe 3.14s_3.14.1s

cisco ios xe 3.15s_3.15.0s

cisco ios xe 3.5e_3.5.2e

cisco ios xe 3.5e_3.5.1e

cisco ios xe 3.11s_3.11.0s

cisco ios xe 3.9s_3.9.2s

cisco ios xe 3.12s_3.12.0s

cisco ios xe 3.11s_3.11.1s

cisco ios xe 3.8s_3.8.2s

cisco ios xe 3.8s_3.8.1s

cisco ios xe 3.6s_3.6.2s

cisco ios xe 3.6s_3.6.1s

cisco ios 15.5\\\\\\(3\\\\\\)s1a

cisco ios 15.2\\\\\\(4\\\\\\)ea

cisco ios 15.5\\\\\\(1\\\\\\)s3

cisco ios 15.5\\\\\\(1\\\\\\)s2

cisco ios 15.2\\\\\\(4\\\\\\)s7

cisco ios 15.2\\\\\\(3\\\\\\)ea

cisco ios 15.1\\\\\\(1\\\\\\)sy6

cisco ios 15.0\\\\\\(1\\\\\\)sy9

cisco ios 15.2\\\\\\(2\\\\\\)e3

cisco ios 15.2\\\\\\(2\\\\\\)e2

cisco ios 15.2\\\\\\(3\\\\\\)e1

cisco ios 15.0\\\\\\(1\\\\\\)sy8

cisco ios 15.4\\\\\\(3\\\\\\)s1

cisco ios 15.1\\\\\\(1\\\\\\)sy4

cisco ios 15.4\\\\\\(1\\\\\\)s2

cisco ios 15.2\\\\\\(1\\\\\\)e2

cisco ios 15.3\\\\\\(3\\\\\\)s1a

cisco ios 15.5\\\\\\(1\\\\\\)s

cisco ios 15.3\\\\\\(3\\\\\\)s6

cisco ios 15.3\\\\\\(3\\\\\\)s3

cisco ios 15.4\\\\\\(2\\\\\\)s

cisco ios 15.3\\\\\\(2\\\\\\)s0a

cisco ios 15.0\\\\\\(1\\\\\\)sy4

cisco ios 15.4\\\\\\(1\\\\\\)s

cisco ios 15.2\\\\\\(4\\\\\\)s6

cisco ios 15.2\\\\\\(4\\\\\\)s4

cisco ios 15.2\\\\\\(2\\\\\\)sng

cisco ios 15.1\\\\\\(1\\\\\\)sy1

cisco ios 15.2\\\\\\(1\\\\\\)s

cisco ios xe 3.8s_3.8.0s

cisco ios xe 3.7s_3.7.4s

cisco ios xe 3.6s_3.6.0s

cisco ios xe 3.5s_3.5.2s

cisco ios 15.5\\\\\\(3\\\\\\)s1

cisco ios 15.2\\\\\\(3m\\\\\\)e3

cisco ios 15.2\\\\\\(2\\\\\\)eb1

cisco ios 15.4\\\\\\(3\\\\\\)s4

cisco ios 15.4\\\\\\(2\\\\\\)s4

cisco ios 15.2\\\\\\(2\\\\\\)ea2

cisco ios 15.2\\\\\\(2\\\\\\)ea1

cisco ios 15.4\\\\\\(3\\\\\\)s3

cisco ios 15.5\\\\\\(3\\\\\\)s

cisco ios 15.1\\\\\\(2\\\\\\)sy5

cisco ios 15.1\\\\\\(1\\\\\\)sy5

cisco ios 15.4\\\\\\(1\\\\\\)s3

cisco ios 15.2\\\\\\(2\\\\\\)e1

cisco ios 15.1\\\\\\(2\\\\\\)sy3

cisco ios 15.0\\\\\\(1\\\\\\)sy7

cisco ios 15.2\\\\\\(1\\\\\\)e1

cisco ios 15.2\\\\\\(4\\\\\\)s4a

cisco ios 15.3\\\\\\(3\\\\\\)s2

cisco ios 15.2\\\\\\(1\\\\\\)sy

cisco ios 15.0\\\\\\(1\\\\\\)sy5

cisco ios 15.1\\\\\\(2\\\\\\)sy2

cisco ios 15.2\\\\\\(2\\\\\\)e

cisco ios 15.2\\\\\\(2\\\\\\)snh1

cisco ios 15.2\\\\\\(4\\\\\\)s1

cisco ios 15.2\\\\\\(1\\\\\\)e

cisco ios 15.2\\\\\\(2\\\\\\)s1

cisco ios 15.2\\\\\\(1\\\\\\)s2

cisco ios xe 3.7e_3.7.2e

cisco ios xe 3.10s_3.10.6s

cisco ios xe 3.7s_3.7.7s

cisco ios xe 3.6e_3.6.1e

cisco ios xe 3.6e_3.6.0e

cisco ios xe 3.5e_3.5.3e

cisco ios xe 3.11s_3.11.3s

cisco ios xe 3.10s_3.10.5s

cisco ios xe 3.13s_3.13.0s

cisco ios xe 3.11s_3.11.2s

cisco ios xe 3.9s_3.9.0s

cisco ios xe 3.9s_3.9.1s

cisco ios xe 3.7s_3.7.1s

cisco ios xe 3.7s_3.7.0s

cisco ios 15.5\\\\\\(3\\\\\\)sn

cisco ios 15.5\\\\\\(3\\\\\\)s0a

cisco ios 15.5\\\\\\(2\\\\\\)s2

cisco ios 15.5\\\\\\(2\\\\\\)s1

cisco ios 15.2\\\\\\(2\\\\\\)sy

cisco ios 15.2\\\\\\(1\\\\\\)sy0a

cisco ios 15.2\\\\\\(2a\\\\\\)e2

cisco ios 15.1\\\\\\(2\\\\\\)sy6

cisco ios 15.2\\\\\\(1\\\\\\)sy1

cisco ios 15.2\\\\\\(2a\\\\\\)e1

cisco ios 15.4\\\\\\(2\\\\\\)s2

cisco ios 15.0\\\\\\(1\\\\\\)sy7a

cisco ios 15.5\\\\\\(2\\\\\\)s

cisco ios 15.4\\\\\\(2\\\\\\)s1

cisco ios 15.3\\\\\\(3\\\\\\)s5

cisco ios 15.2\\\\\\(2\\\\\\)eb

cisco ios 15.4\\\\\\(3\\\\\\)s

cisco ios 15.0\\\\\\(1\\\\\\)sy6

cisco ios 15.1\\\\\\(1\\\\\\)sy2

cisco ios 15.3\\\\\\(2\\\\\\)s1

cisco ios 15.3\\\\\\(2\\\\\\)s2

cisco ios 15.3\\\\\\(1\\\\\\)s2

cisco ios 15.2\\\\\\(2\\\\\\)sni

cisco ios 15.2\\\\\\(4\\\\\\)s5

cisco ios 15.2\\\\\\(4\\\\\\)s2

cisco ios 15.2\\\\\\(2\\\\\\)s0a

cisco ios 15.2\\\\\\(2\\\\\\)s2

cisco ios 15.2\\\\\\(1\\\\\\)s1

cisco ios 15.2\\\\\\(2\\\\\\)s

cisco ios 15.2\\\\\\(1\\\\\\)ey

cisco ios 15.2\\\\\\(4\\\\\\)s3a

cisco ios 15.1\\\\\\(2\\\\\\)sy1

cisco ios 15.3\\\\\\(1\\\\\\)s1

cisco ios 15.1\\\\\\(2\\\\\\)sy

cisco ios 15.2\\\\\\(4\\\\\\)s3

cisco ios 15.0\\\\\\(1\\\\\\)sy3

cisco ios 15.3\\\\\\(3\\\\\\)s

cisco ios 15.3\\\\\\(2\\\\\\)s

cisco ios 15.3\\\\\\(1\\\\\\)s

cisco ios 15.2\\\\\\(4\\\\\\)s

Vendor Advisories

A vulnerability in the DHCP version 6 (DHCPv6) relay feature of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload The vulnerability is due to insufficient validation of DHCPv6 relay messages An attacker could exploit this vulnerability by sending a crafted DHCPv6 relay message to ...