Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
http://secunia.com/advisories/60311 | third party advisory |
http://www.securitytracker.com/id/1030623 | vdb entry third party advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3322 | vendor advisory |
http://www.securityfocus.com/bid/68833 | vdb entry third party advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=35009 | vendor advisory |