CVE-2014-3322
published 2014-07-24CVE-2014-3322: Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial…
PriorityP424medium6.1CVSS 2.0
AVAACLAuNCNINAC
EPSS
1.21%
65.1th percentile
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios_xr | <= 4.3.2 | — |
| cisco | ios_xr | — | — |
| cisco | ios_xr | — | — |
CVSS provenance
nvdv2.06.1MEDIUMAV:A/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco IOS XR Software NetFlow Processing Denial of Service Vulnerability
vendor_cisco·2014-07-23·CVSS 6.1
CVE-2014-3322 [MEDIUM] CWE-399 Cisco IOS XR Software NetFlow Processing Denial of Service Vulnerability
Cisco IOS XR Software NetFlow Processing Denial of Service Vulnerability
A vulnerability in NetFlow processing in Cisco IOS XR Software for ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause a lockup and eventual reload of a Network Processor (NP) chip and a line card processing traffic.
The vulnerability is due to improper NetFlow sampling of malformed IP version 4 (IPv4) or IP version 6 (IPv6) packets. An attacker could exploit this vulnerability by sending a stream of malformed IPv4 or IPv6 packets to be processed through an affected device. An exploit could allow the attacker to cause a lockup and eventual reload of an NP chip and a line card, leading to a denial of service (DoS) condition.
Cisco has confirmed the vulnerability in
GHSA
GHSA-qjvm-m4mm-3r2j: Cisco IOS XR 4
ghsa_unreviewed·2022-05-17
CVE-2014-3322 [MEDIUM] CWE-20 GHSA-qjvm-m4mm-3r2j: Cisco IOS XR 4
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/60311http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3322http://tools.cisco.com/security/center/viewAlert.x?alertId=35009http://www.securityfocus.com/bid/68833http://www.securitytracker.com/id/1030623http://secunia.com/advisories/60311http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3322http://tools.cisco.com/security/center/viewAlert.x?alertId=35009http://www.securityfocus.com/bid/68833http://www.securitytracker.com/id/1030623
2014-07-24
Published