CVE-2013-5549

Cisco IOS XR 3.8.1-4.2.0 - Denial of Service via Fragmented Packet Processing

Title source: llm
STIX 2.1

Description

Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which allows remote attackers to cause a denial of service (transmission outage) via (1) IPv4 or (2) IPv6 traffic, aka Bug ID CSCuh30380.

References (1)

Core 1
Core References

Scores

EPSS 0.0166
EPSS Percentile 74.2%

Details

Status published
Products (16)
cisco/ios_xr 3.8.1
cisco/ios_xr 3.8.2
cisco/ios_xr 3.8.3
cisco/ios_xr 3.8.4
cisco/ios_xr 3.9.0
cisco/ios_xr 3.9.1
cisco/ios_xr 3.9.2
cisco/ios_xr 4.0.0
cisco/ios_xr 4.0.1
cisco/ios_xr 4.0.2
... and 6 more
Published Oct 25, 2013
Tracked Since Feb 18, 2026