Cisco ASR1000 series router Denial-of-Service Vulnerability (CVE-2015-0685)
Cisco ASR1000 series router Denial-of-Service Vulnerability (CVE-2015-0685)
Release date:
Updated on:
Affected Systems:
Cisco ASR 1000
Description:
CVE (CAN) ID: CVE-2015-0685
The Cisco ASR1000 Series Aggregation Service Router provides a wide area network edge solution that integrates information, communication, collaboration, and commerce.
Cisco ASR 1000 does not properly handle route neighbor announcements. Unauthenticated attackers send malicious IP packets to the affected device, which can cause the device to stop responding.
<* Source: Cisco
*>
Suggestion:
Vendor patch:
Cisco
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://tools.cisco.com/security/center/viewAlert.x? AlertId = 38124
This article permanently updates the link address: