5
CVSSv2

CVE-2016-1436

Published: 23/06/2016 Updated: 30/11/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) implementation on Cisco ASR 5000 Packet Data Network Gateway devices prior to 19.4 allows remote malicious users to cause a denial of service (Session Manager process restart) via a crafted GTPv1 packet, aka Bug ID CSCuz46198.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco asr 5000 software 19.2.0

cisco asr 5000 software 19.1.0

cisco asr 5000 software 18.0.0.59167

cisco asr 5000 software 18.0.l0.59219

cisco asr 5000 software 19.3.0

cisco asr 5000 software 19.0.1

cisco asr 5000 software 18.4.0

cisco asr 5000 software 19.0.m0.60828

cisco asr 5000 software 18.1.0.59780

cisco asr 5000 software 18.1.0.59776

cisco asr 5000 software 18.1.0

cisco asr 5000 software 17.7.0

cisco asr 5000 software 19.1.0.61559

cisco asr 5000 software 19.0.m0.60737

cisco asr 5000 software 18.0.0.59211

cisco asr 5000 software 18.1_base

cisco asr 5000 software 17.2.0

cisco asr 5000 software 17.3.1

cisco asr 5000 software 19.0.m0.61045

cisco asr 5000 software 18.0.0.57828

cisco asr 5000 software 17.2.0.59184

cisco asr 5000 software 18.0.0