CVE-2013-5546
Published Oct 31, 2013
Last updated 3 years ago
Overview
- Description
- The TCP reassembly feature in Cisco IOS XE 3.7 before 3.7.3S and 3.8 before 3.8.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via large TCP packets that are processed by the (1) NAT or (2) ALG component, aka Bug ID CSCud72509.
- Source
- ykramarz@cisco.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-20
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ios_xe:3.7.0s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E979597C-E614-45E9-9AC4-66DE323221BF" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:3.7.1s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55E908D0-7327-42B7-81C0-FA25BF45929C" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:3.7.2s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5420E152-A00C-406C-8E27-6B7ADE4ABF5B" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:3.8.0s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2835C64E-808F-4A6C-B245-7A9996FAFE3A" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED7C321E-F083-4AB6-96A0-D6358980441E" }, { "criteria": "cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4376E56-A21C-4642-A85D-439C8E21CD7F" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F" }, { "criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B" }, { "criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D" }, { "criteria": "cpe:2.3:h:cisco:asr_1023_router:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "399C03D1-C4B2-4DE6-9772-EC0BD88D7FCF" } ], "operator": "OR" } ], "operator": "AND" } ]