The Cisco Express Forwarding processing module in Cisco IOS XE allows remote attackers to cause a denial of service (device reload) via crafted MPLS packets that are not properly handled during IP header validation, aka Bug ID CSCuj23992.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/63979 | third party advisory vdb entry |
http://osvdb.org/100394 | vdb entry |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6706 | vendor advisory |
http://www.securitytracker.com/id/1029407 | third party advisory vdb entry |
http://tools.cisco.com/security/center/viewAlert.x?alertId=31950 | vendor advisory |
http://secunia.com/advisories/55817 | third party advisory |