CVE-2016-1428
MEDIUMCisco IOS XE <3.17S - Use After Free
Title source: llmDescription
Double free vulnerability in Cisco IOS XE 3.15S, 3.16S, and 3.17S allows remote authenticated users to cause a denial of service (device restart) via a sequence of crafted SNMP read requests, aka Bug ID CSCux13174.
Scores
CVSS v3
6.5
EPSS
0.0045
EPSS Percentile
63.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-399
Status
draft
Affected Products (3)
cisco/ios_xe
cisco/ios_xe
cisco/ios_xe
Timeline
Published
Jun 23, 2016
Tracked Since
Feb 18, 2026