CVE Vulnerabilities

CVE-2016-6355

Published: Aug 23, 2016 | Modified: Apr 12, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.

Affected Software

NameVendorStart VersionEnd Version
Ios_xrCisco5.1.0 (including)5.1.0 (including)
Ios_xrCisco5.1.1 (including)5.1.1 (including)
Ios_xrCisco5.1.1.k9sec (including)5.1.1.k9sec (including)
Ios_xrCisco5.1.2 (including)5.1.2 (including)
Ios_xrCisco5.1.3 (including)5.1.3 (including)
Ios_xrCisco5.2.0 (including)5.2.0 (including)
Ios_xrCisco5.2.1 (including)5.2.1 (including)
Ios_xrCisco5.2.2 (including)5.2.2 (including)
Ios_xrCisco5.2.3 (including)5.2.3 (including)
Ios_xrCisco5.2.4 (including)5.2.4 (including)
Ios_xrCisco5.2.5 (including)5.2.5 (including)
Ios_xrCisco5.3.0 (including)5.3.0 (including)
Ios_xrCisco5.3.1 (including)5.3.1 (including)
Ios_xrCisco5.3.2 (including)5.3.2 (including)

References