Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of packets with multicast destination MAC addresses, which allows remote attackers to cause a denial of service (chip and card hangs) via a crafted packet, aka Bug ID CSCup77750.
2014-08-26T10:55:04.573
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.6 (MEDIUM)
AV:A/AC:H/Au:N/C:N/I:N/A:C
3.2
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ios_xr | ≤ 4.3.2 | Yes |
Operating System | cisco | ios_xr | 4.3.0 | Yes |
Operating System | cisco | ios_xr | 4.3.1 | Yes |
Hardware | cisco | asr_9000_rsp440_router | - | Yes |
Hardware | cisco | asr_9001 | - | Yes |
Hardware | cisco | asr_9006 | - | Yes |
Hardware | cisco | asr_9010 | - | Yes |
Hardware | cisco | asr_9904 | - | Yes |
Hardware | cisco | asr_9912 | - | Yes |
Hardware | cisco | asr_9922 | - | Yes |