CVE-2016-1426Cisco IOS XR vulnerability

CWE-3994 documents4 sources
Severity
7.5HIGHNVD
EPSS
0.7%
top 26.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 15
Latest updateMay 17

Description

Cisco IOS XR 5.x through 5.2.5 on NCS 6000 devices allows remote attackers to cause a denial of service (timer consumption and Route Processor reload) via crafted SSH traffic, aka Bug ID CSCux76819.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDcisco/ios_xr14 versions+13

🔴Vulnerability Details

2
GHSA
GHSA-2vvf-m6gh-56m4: Cisco IOS XR 52022-05-17
CVEList
CVE-2016-1426: Cisco IOS XR 52016-07-15

📋Vendor Advisories

1
Cisco
Cisco IOS XR for NCS 6000 Packet Timer Leak Denial of Service Vulnerability2016-07-13
CVE-2016-1426 — Cisco IOS XR vulnerability | cvebase