The Overlay Transport Virtualization (OTV) implementation in Cisco IOS XE 3.10S allows remote attackers to cause a denial of service (device reload) via a series of packets that are considered oversized and trigger improper fragmentation handling, aka Bug IDs CSCup37676 and CSCup30335.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ios_xe | Cisco | 3.10.0s (including) | 3.10.0s (including) |
Ios_xe | Cisco | 3.10s.01 (including) | 3.10s.01 (including) |