CVE-2014-3321

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
18/07/2014
Last modified:
12/04/2025

Description

Cisco IOS XR 4.3.4 and earlier on ASR 9000 devices, when bridge-group virtual interface (BVI) routing is enabled, allows remote attackers to cause a denial of service (chip and card hangs) via a series of crafted MPLS packets, aka Bug ID CSCuo91149.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:cisco:ios_xr:*:*:*:*:*:*:*:* 4.3.4 (including)
cpe:2.3:o:cisco:ios_xr:4.3.0:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xr:4.3.1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xr:4.3.2:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9000_rsp440_router:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9001:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9006:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9010:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9904:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9912:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:asr_9922:-:*:*:*:*:*:*:*