The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of service (multiple connection resets) by leveraging a peer relationship and sending a malformed attribute, aka Bug IDs CSCtt35379, CSCty58300, CSCtz63248, and CSCtz62914.
2012-09-27T00:55:00.903
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.1 (HIGH)
AV:N/AC:M/Au:N/C:N/I:N/A:C
8.6
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ios | 15.2 | Yes |
Operating System | cisco | ios_xe | 3.5.0s | Yes |
Operating System | cisco | ios_xe | 3.5.1s | Yes |
Operating System | cisco | ios_xr | 4.1 | Yes |
Operating System | cisco | ios_xr | 4.1.1 | Yes |
Operating System | cisco | ios_xr | 4.1.2 | Yes |
Operating System | cisco | ios_xr | 4.2.0 | Yes |
Operating System | cisco | ios_xr | 4.2.1 | Yes |
Operating System | cisco | ios_xr | 4.2.2 | Yes |