CVE-2015-0639
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The Common Flow Table (CFT) feature in Cisco IOS XE 3.6 and 3.7 before 3.7.1S, 3.8 before 3.8.0S, 3.9 before 3.9.0S, 3.10 before 3.10.0S, 3.11 before 3.11.0S, 3.12 before 3.12.0S, 3.13 before 3.13.0S, 3.14 before 3.14.0S, and 3.15 before 3.15.0S, when MMON or NBAR is enabled, allows remote attackers to cause a denial of service (device reload) via malformed IPv6 packets with IPv4 UDP encapsulation, aka Bug ID CSCua79665.
La característica Common Flow Table (CFT) en Cisco IOS XE 3.6 y 3.7 anterior a 3.7.1S, 3.8 anterior a 3.8.0S, 3.9 anterior a 3.9.0S, 3.10 anterior a 3.10.0S, 3.11 anterior a 3.11.0S, 3.12 anterior a 3.12.0S, 3.13 anterior a 3.13.0S, 3.14 anterior a 3.14.0S, y 3.15 anterior a 3.15.0S, cuando MMON o NBAR está habilitado, permite a atacantes remotos causar una denegación de servicio (recarga de dispositivo) a través de paquetes IPv6 malformados con la encapsulación IPv4 UDP, también conocido como Bug ID CSCua79665.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-01-07 CVE Reserved
- 2015-03-26 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securitytracker.com/id/1031981 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150325-iosxe | 2015-09-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.6s Search vendor "Cisco" for product "Ios Xe" and version "3.6s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.6s.0 Search vendor "Cisco" for product "Ios Xe" and version "3.6s.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.6s.1 Search vendor "Cisco" for product "Ios Xe" and version "3.6s.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.6s.2 Search vendor "Cisco" for product "Ios Xe" and version "3.6s.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s Search vendor "Cisco" for product "Ios Xe" and version "3.7s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.0 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.1 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.2 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.3 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.4 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.7s.5 Search vendor "Cisco" for product "Ios Xe" and version "3.7s.5" | - |
Affected
|