Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
2014-07-24T14:55:07.723
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.1 (MEDIUM)
AV:A/AC:L/Au:N/C:N/I:N/A:C
6.5
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ios_xr | ≤ 4.3.2 | Yes |
Operating System | cisco | ios_xr | 4.3.0 | Yes |
Operating System | cisco | ios_xr | 4.3.1 | Yes |
Hardware | cisco | asr_9000_rsp440_router | - | Yes |
Hardware | cisco | asr_9001 | - | Yes |
Hardware | cisco | asr_9006 | - | Yes |
Hardware | cisco | asr_9010 | - | Yes |
Hardware | cisco | asr_9904 | - | Yes |
Hardware | cisco | asr_9912 | - | Yes |
Hardware | cisco | asr_9922 | - | Yes |