CVE-2015-4243

Cisco IOS XE 3.5.0S - Denial of Service via Malformed PPPoE PADR Packets

Title source: llm
STIX 2.1

Description

The PPPoE establishment implementation in Cisco IOS XE 3.5.0S on ASR 1000 devices allows remote attackers to cause a denial of service (device reload) by sending malformed PPPoE Active Discovery Request (PADR) packets on the local network, aka Bug ID CSCty94202.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032805
Vendor Advisory vendor-advisory x_refsource_cisco
http://tools.cisco.com/security/center/viewAlert.x?alertId=39675

Scores

EPSS 0.0077
EPSS Percentile 51.9%

Details

CWE
CWE-399
Status published
Products (1)
cisco/ios_xe 3.5.0s
Published Jul 08, 2015
Tracked Since Feb 18, 2026