CVE-2016-6355

Memory leak in Cisco IOS XR 5.1.x through 5.1.3, 5.2.x through 5.2.5, and 5.3.x through 5.3.2 on ASR 9001 devices allows remote attackers to cause a denial of service (control-plane protocol outage) via crafted fragmented packets, aka Bug ID CSCux26791.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
VendorProductVersion
ciscoios_xr
5.1.0
ciscoios_xr
5.1.1
ciscoios_xr
5.1.1.k9sec:k9sec
ciscoios_xr
5.1.2
ciscoios_xr
5.1.3
ciscoios_xr
5.2.0
ciscoios_xr
5.2.1
ciscoios_xr
5.2.2
ciscoios_xr
5.2.3
ciscoios_xr
5.2.4
ciscoios_xr
5.2.5
ciscoios_xr
5.3.0
ciscoios_xr
5.3.1
ciscoios_xr
5.3.2
𝑥
= Vulnerable software versions
Common Weakness Enumeration