CVE Vulnerabilities

CVE-2016-6385

Published: Oct 05, 2016 | Modified: Jul 30, 2017
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

Memory leak in the Smart Install client implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.2 through 3.8 allows remote attackers to cause a denial of service (memory consumption) via crafted image-list parameters, aka Bug ID CSCuy82367.

Affected Software

Name Vendor Start Version End Version
Ios Cisco 12.2(35)ex (including) 12.2(35)ex (including)
Ios Cisco 12.2(35)ex1 (including) 12.2(35)ex1 (including)
Ios Cisco 12.2(35)ex2 (including) 12.2(35)ex2 (including)
Ios Cisco 12.2(35)se (including) 12.2(35)se (including)
Ios Cisco 12.2(35)se1 (including) 12.2(35)se1 (including)
Ios Cisco 12.2(35)se2 (including) 12.2(35)se2 (including)
Ios Cisco 12.2(35)se3 (including) 12.2(35)se3 (including)
Ios Cisco 12.2(35)se4 (including) 12.2(35)se4 (including)
Ios Cisco 12.2(35)se5 (including) 12.2(35)se5 (including)
Ios Cisco 12.2(37)ex (including) 12.2(37)ex (including)
Ios Cisco 12.2(37)ey (including) 12.2(37)ey (including)
Ios Cisco 12.2(37)se (including) 12.2(37)se (including)
Ios Cisco 12.2(37)se1 (including) 12.2(37)se1 (including)
Ios Cisco 12.2(40)ex (including) 12.2(40)ex (including)
Ios Cisco 12.2(40)ex1 (including) 12.2(40)ex1 (including)
Ios Cisco 12.2(40)ex2 (including) 12.2(40)ex2 (including)
Ios Cisco 12.2(40)ex3 (including) 12.2(40)ex3 (including)
Ios Cisco 12.2(40)se (including) 12.2(40)se (including)
Ios Cisco 12.2(40)se1 (including) 12.2(40)se1 (including)
Ios Cisco 12.2(40)se2 (including) 12.2(40)se2 (including)
Ios Cisco 12.2(44)ex (including) 12.2(44)ex (including)
Ios Cisco 12.2(44)ex1 (including) 12.2(44)ex1 (including)
Ios Cisco 12.2(44)ey (including) 12.2(44)ey (including)
Ios Cisco 12.2(44)se (including) 12.2(44)se (including)
Ios Cisco 12.2(44)se1 (including) 12.2(44)se1 (including)
Ios Cisco 12.2(44)se2 (including) 12.2(44)se2 (including)
Ios Cisco 12.2(44)se3 (including) 12.2(44)se3 (including)
Ios Cisco 12.2(44)se4 (including) 12.2(44)se4 (including)
Ios Cisco 12.2(44)se5 (including) 12.2(44)se5 (including)
Ios Cisco 12.2(44)se6 (including) 12.2(44)se6 (including)
Ios Cisco 12.2(46)ex (including) 12.2(46)ex (including)
Ios Cisco 12.2(46)ey (including) 12.2(46)ey (including)
Ios Cisco 12.2(46)se (including) 12.2(46)se (including)
Ios Cisco 12.2(46)se1 (including) 12.2(46)se1 (including)
Ios Cisco 12.2(46)se2 (including) 12.2(46)se2 (including)
Ios Cisco 12.2(50)se (including) 12.2(50)se (including)
Ios Cisco 12.2(50)se1 (including) 12.2(50)se1 (including)
Ios Cisco 12.2(50)se2 (including) 12.2(50)se2 (including)
Ios Cisco 12.2(50)se3 (including) 12.2(50)se3 (including)
Ios Cisco 12.2(50)se4 (including) 12.2(50)se4 (including)
Ios Cisco 12.2(50)se5 (including) 12.2(50)se5 (including)
Ios Cisco 12.2(52)ex (including) 12.2(52)ex (including)
Ios Cisco 12.2(52)ex1 (including) 12.2(52)ex1 (including)
Ios Cisco 12.2(52)se (including) 12.2(52)se (including)
Ios Cisco 12.2(52)se1 (including) 12.2(52)se1 (including)
Ios Cisco 12.2(53)ex (including) 12.2(53)ex (including)
Ios Cisco 12.2(53)ey (including) 12.2(53)ey (including)
Ios Cisco 12.2(53)ez (including) 12.2(53)ez (including)
Ios Cisco 12.2(53)se (including) 12.2(53)se (including)
Ios Cisco 12.2(53)se1 (including) 12.2(53)se1 (including)
Ios Cisco 12.2(53)se2 (including) 12.2(53)se2 (including)
Ios Cisco 12.2(54)se (including) 12.2(54)se (including)
Ios Cisco 12.2(55)ex (including) 12.2(55)ex (including)
Ios Cisco 12.2(55)ex1 (including) 12.2(55)ex1 (including)
Ios Cisco 12.2(55)ex2 (including) 12.2(55)ex2 (including)
Ios Cisco 12.2(55)ex3 (including) 12.2(55)ex3 (including)
Ios Cisco 12.2(55)ey (including) 12.2(55)ey (including)
Ios Cisco 12.2(55)ez (including) 12.2(55)ez (including)
Ios Cisco 12.2(55)se (including) 12.2(55)se (including)
Ios Cisco 12.2(55)se1 (including) 12.2(55)se1 (including)
Ios Cisco 12.2(55)se2 (including) 12.2(55)se2 (including)
Ios Cisco 12.2(55)se3 (including) 12.2(55)se3 (including)
Ios Cisco 12.2(55)se4 (including) 12.2(55)se4 (including)
Ios Cisco 12.2(55)se5 (including) 12.2(55)se5 (including)
Ios Cisco 12.2(55)se6 (including) 12.2(55)se6 (including)
Ios Cisco 12.2(55)se7 (including) 12.2(55)se7 (including)
Ios Cisco 12.2(55)se8 (including) 12.2(55)se8 (including)
Ios Cisco 12.2(55)se9 (including) 12.2(55)se9 (including)
Ios Cisco 12.2(55)se10 (including) 12.2(55)se10 (including)
Ios Cisco 12.2(58)ex (including) 12.2(58)ex (including)
Ios Cisco 12.2(58)ey (including) 12.2(58)ey (including)
Ios Cisco 12.2(58)ey1 (including) 12.2(58)ey1 (including)
Ios Cisco 12.2(58)ey2 (including) 12.2(58)ey2 (including)
Ios Cisco 12.2(58)ez (including) 12.2(58)ez (including)
Ios Cisco 12.2(58)se (including) 12.2(58)se (including)
Ios Cisco 12.2(58)se1 (including) 12.2(58)se1 (including)
Ios Cisco 12.2(58)se2 (including) 12.2(58)se2 (including)
Ios Cisco 12.2(60)ez (including) 12.2(60)ez (including)
Ios Cisco 12.2(60)ez1 (including) 12.2(60)ez1 (including)
Ios Cisco 12.2(60)ez2 (including) 12.2(60)ez2 (including)
Ios Cisco 12.2(60)ez3 (including) 12.2(60)ez3 (including)
Ios Cisco 12.2(60)ez4 (including) 12.2(60)ez4 (including)
Ios Cisco 12.2(60)ez5 (including) 12.2(60)ez5 (including)
Ios Cisco 12.2(60)ez6 (including) 12.2(60)ez6 (including)
Ios Cisco 12.2(60)ez7 (including) 12.2(60)ez7 (including)
Ios Cisco 12.2(60)ez8 (including) 12.2(60)ez8 (including)
Ios Cisco 15.0(1)ex (including) 15.0(1)ex (including)
Ios Cisco 15.0(1)ey (including) 15.0(1)ey (including)
Ios Cisco 15.0(1)ey1 (including) 15.0(1)ey1 (including)
Ios Cisco 15.0(1)ey2 (including) 15.0(1)ey2 (including)
Ios Cisco 15.0(1)se (including) 15.0(1)se (including)
Ios Cisco 15.0(1)se1 (including) 15.0(1)se1 (including)
Ios Cisco 15.0(1)se2 (including) 15.0(1)se2 (including)
Ios Cisco 15.0(1)se3 (including) 15.0(1)se3 (including)
Ios Cisco 15.0(2)eb (including) 15.0(2)eb (including)
Ios Cisco 15.0(2)ec (including) 15.0(2)ec (including)
Ios Cisco 15.0(2)ed (including) 15.0(2)ed (including)
Ios Cisco 15.0(2)ed1 (including) 15.0(2)ed1 (including)
Ios Cisco 15.0(2)eh (including) 15.0(2)eh (including)
Ios Cisco 15.0(2)ej (including) 15.0(2)ej (including)
Ios Cisco 15.0(2)ej1 (including) 15.0(2)ej1 (including)
Ios Cisco 15.0(2)ek (including) 15.0(2)ek (including)
Ios Cisco 15.0(2)ek1 (including) 15.0(2)ek1 (including)
Ios Cisco 15.0(2)ex (including) 15.0(2)ex (including)
Ios Cisco 15.0(2)ex1 (including) 15.0(2)ex1 (including)
Ios Cisco 15.0(2)ex2 (including) 15.0(2)ex2 (including)
Ios Cisco 15.0(2)ex3 (including) 15.0(2)ex3 (including)
Ios Cisco 15.0(2)ex4 (including) 15.0(2)ex4 (including)
Ios Cisco 15.0(2)ex5 (including) 15.0(2)ex5 (including)
Ios Cisco 15.0(2)ex8 (including) 15.0(2)ex8 (including)
Ios Cisco 15.0(2)ex10 (including) 15.0(2)ex10 (including)
Ios Cisco 15.0(2)ey (including) 15.0(2)ey (including)
Ios Cisco 15.0(2)ey1 (including) 15.0(2)ey1 (including)
Ios Cisco 15.0(2)ey2 (including) 15.0(2)ey2 (including)
Ios Cisco 15.0(2)ey3 (including) 15.0(2)ey3 (including)
Ios Cisco 15.0(2)ez (including) 15.0(2)ez (including)
Ios Cisco 15.0(2)se (including) 15.0(2)se (including)
Ios Cisco 15.0(2)se1 (including) 15.0(2)se1 (including)
Ios Cisco 15.0(2)se2 (including) 15.0(2)se2 (including)
Ios Cisco 15.0(2)se3 (including) 15.0(2)se3 (including)
Ios Cisco 15.0(2)se4 (including) 15.0(2)se4 (including)
Ios Cisco 15.0(2)se5 (including) 15.0(2)se5 (including)
Ios Cisco 15.0(2)se6 (including) 15.0(2)se6 (including)
Ios Cisco 15.0(2)se7 (including) 15.0(2)se7 (including)
Ios Cisco 15.0(2)se9 (including) 15.0(2)se9 (including)
Ios Cisco 15.0(2a)ex5 (including) 15.0(2a)ex5 (including)
Ios Cisco 15.0(2a)se9 (including) 15.0(2a)se9 (including)
Ios Cisco 15.1(2)sg (including) 15.1(2)sg (including)
Ios Cisco 15.1(2)sg1 (including) 15.1(2)sg1 (including)
Ios Cisco 15.1(2)sg2 (including) 15.1(2)sg2 (including)
Ios Cisco 15.1(2)sg3 (including) 15.1(2)sg3 (including)
Ios Cisco 15.1(2)sg4 (including) 15.1(2)sg4 (including)
Ios Cisco 15.1(2)sg5 (including) 15.1(2)sg5 (including)
Ios Cisco 15.1(2)sg6 (including) 15.1(2)sg6 (including)
Ios Cisco 15.1(2)sg7 (including) 15.1(2)sg7 (including)
Ios Cisco 15.2(1)e (including) 15.2(1)e (including)
Ios Cisco 15.2(1)e1 (including) 15.2(1)e1 (including)
Ios Cisco 15.2(1)e2 (including) 15.2(1)e2 (including)
Ios Cisco 15.2(1)e3 (including) 15.2(1)e3 (including)
Ios Cisco 15.2(1)ey (including) 15.2(1)ey (including)
Ios Cisco 15.2(2)e (including) 15.2(2)e (including)
Ios Cisco 15.2(2)e1 (including) 15.2(2)e1 (including)
Ios Cisco 15.2(2)e2 (including) 15.2(2)e2 (including)
Ios Cisco 15.2(2)e4 (including) 15.2(2)e4 (including)
Ios Cisco 15.2(2)eb (including) 15.2(2)eb (including)
Ios Cisco 15.2(2)eb1 (including) 15.2(2)eb1 (including)
Ios Cisco 15.2(2)eb2 (including) 15.2(2)eb2 (including)
Ios Cisco 15.2(2a)e1 (including) 15.2(2a)e1 (including)
Ios Cisco 15.2(3)e (including) 15.2(3)e (including)
Ios Cisco 15.2(3)e1 (including) 15.2(3)e1 (including)
Ios Cisco 15.2(3)e2 (including) 15.2(3)e2 (including)
Ios Cisco 15.2(3)e3 (including) 15.2(3)e3 (including)
Ios Cisco 15.2(3a)e (including) 15.2(3a)e (including)
Ios Cisco 15.2(3m)e2 (including) 15.2(3m)e2 (including)
Ios Cisco 15.2(3m)e3 (including) 15.2(3m)e3 (including)
Ios Cisco 15.2(4)e (including) 15.2(4)e (including)
Ios Cisco 15.2(4)e1 (including) 15.2(4)e1 (including)
Ios Cisco 15.2(4m)e1 (including) 15.2(4m)e1 (including)
Ios_xe Cisco 3.2.0ja (including) 3.2.0ja (including)
Ios_xe Cisco 3.2.0se (including) 3.2.0se (including)
Ios_xe Cisco 3.2.1se (including) 3.2.1se (including)
Ios_xe Cisco 3.2.2se (including) 3.2.2se (including)
Ios_xe Cisco 3.2.3se (including) 3.2.3se (including)
Ios_xe Cisco 3.3.0se (including) 3.3.0se (including)
Ios_xe Cisco 3.3.0xo (including) 3.3.0xo (including)
Ios_xe Cisco 3.3.1se (including) 3.3.1se (including)
Ios_xe Cisco 3.3.1xo (including) 3.3.1xo (including)
Ios_xe Cisco 3.3.2se (including) 3.3.2se (including)
Ios_xe Cisco 3.3.2xo (including) 3.3.2xo (including)
Ios_xe Cisco 3.3.3se (including) 3.3.3se (including)
Ios_xe Cisco 3.3.4se (including) 3.3.4se (including)
Ios_xe Cisco 3.3.5se (including) 3.3.5se (including)
Ios_xe Cisco 3.5.0e (including) 3.5.0e (including)
Ios_xe Cisco 3.5.1e (including) 3.5.1e (including)
Ios_xe Cisco 3.5.2e (including) 3.5.2e (including)
Ios_xe Cisco 3.5.3e (including) 3.5.3e (including)
Ios_xe Cisco 3.6.0e (including) 3.6.0e (including)
Ios_xe Cisco 3.6.1e (including) 3.6.1e (including)
Ios_xe Cisco 3.6.2ae (including) 3.6.2ae (including)
Ios_xe Cisco 3.6.2e (including) 3.6.2e (including)
Ios_xe Cisco 3.6.3e (including) 3.6.3e (including)
Ios_xe Cisco 3.6.4e (including) 3.6.4e (including)
Ios_xe Cisco 3.7.0e (including) 3.7.0e (including)
Ios_xe Cisco 3.7.1e (including) 3.7.1e (including)
Ios_xe Cisco 3.7.2e (including) 3.7.2e (including)
Ios_xe Cisco 3.7.3e (including) 3.7.3e (including)
Ios_xe Cisco 3.7.5e (including) 3.7.5e (including)
Ios_xe Cisco 3.8.0e (including) 3.8.0e (including)
Ios_xe Cisco 3.8.1e (including) 3.8.1e (including)
Ios_xe Cisco 3.8.2e (including) 3.8.2e (including)

References