CVE-2015-0710
Cisco IOS XE 3.10S - Denial of Service via OTV Oversized Packet Fragmentation Handling
Title source: llmDescription
The Overlay Transport Virtualization (OTV) implementation in Cisco IOS XE 3.10S allows remote attackers to cause a denial of service (device reload) via a series of packets that are considered oversized and trigger improper fragmentation handling, aka Bug IDs CSCup37676 and CSCup30335.
References (2)
Core 2
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/viewAlert.x?alertId=38549
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1032212
Scores
EPSS
0.0072
EPSS Percentile
50.1%
Details
CWE
CWE-399
Status
published
Products (2)
cisco/ios_xe
3.10.0s
cisco/ios_xe
3.10s.01
Published
Apr 29, 2015
Tracked Since
Feb 18, 2026