Denial of Service Vulnerability in Cisco ASR 5500 Series Routers
CVE-2016-6455

7.5HIGH

Key Information:

Vendor
Cisco
Vendor
CVE Published:
3 November 2016

Summary

A vulnerability in the slowpath processing of Cisco ASR 5500 Series routers utilizing the Data Processing Card 2 (DPC2) allows unauthenticated remote attackers to disrupt a subset of subscriber sessions. This disruption can result in a partial denial of service (DoS), impacting connectivity for users of affected systems running compatible versions of the StarOS software. Identified issues in specific versions underline the importance of regular updates and patching to safeguard against potential exploitation.

Affected Version(s)

Cisco StarOS 18.x through 21.x Cisco StarOS 18.x through 21.x

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.