Description
Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Based Firewall (ZBFW) component, aka Bug ID CSCtt26470.
Published: 2013-10-31
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2013-5383 Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Based Firewall (ZBFW) component, aka Bug ID CSCtt26470.
History

No history.

Subscriptions

Cisco Asr 1001 Asr 1002 Asr 1002-x Asr 1004 Asr 1006 Asr 1023 Router Ios Xe
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-09-16T22:30:30.396Z

Reserved: 2013-08-22T00:00:00.000Z

Link: CVE-2013-5543

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-10-31T21:55:02.830

Modified: 2026-04-29T01:13:23.040

Link: CVE-2013-5543

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses