CVE-2013-1164
Last modified
CVE-2013-1164 is a vulnerability of currently unknown severity. Cisco IOS XE 3.4 before 3.4.4S, 3.5, and 3.6 on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 multicast packets, aka Bug ID CSCtz97563.. EPSS estimates a 1.91% chance of exploitation in the next 30 days.
Description
Cisco IOS XE 3.4 before 3.4.4S, 3.5, and 3.6 on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 multicast packets, aka Bug ID CSCtz97563.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios Xe | 3.4.0as |
| Cisco | Ios Xe | 3.4.0s |
| Cisco | Ios Xe | 3.4.1s |
| Cisco | Ios Xe | 3.4.2s |
| Cisco | Ios Xe | 3.4.3s |
| Cisco | Ios Xe | 3.5.0s |
| Cisco | Ios Xe | 3.6.0s |
| Cisco | Asr 1001 | All versions |
| Cisco | Asr 1002 | All versions |
| Cisco | Asr 1002-X | All versions |
| Cisco | Asr 1004 | All versions |
| Cisco | Asr 1006 | All versions |
| Cisco | Asr 1013 | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-1164?
How severe is CVE-2013-1164?
How do I fix CVE-2013-1164?
Are you affected by CVE-2013-1164?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
