The Overlay Transport Virtualization (OTV) implementation in Cisco IOS XE 3.10S allows remote attackers to cause a denial of service (device reload) via a series of packets that are considered oversized and trigger improper fragmentation handling, aka Bug IDs CSCup37676 and CSCup30335.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://tools.cisco.com/security/center/viewAlert.x?alertId=38549 | vendor advisory |
http://www.securitytracker.com/id/1032212 | vdb entry |