CVE-2016-6382
published 2016-10-05CVE-2016-6382: Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (device restart) via a malformed IPv6…
PriorityP339high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
4.90%
91.2th percentile
Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (device restart) via a malformed IPv6 Protocol Independent Multicast (PIM) register packet, aka Bug ID CSCuy16399.
Affected
170 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
| cisco | ios | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Rockwell Automation Stratix 5900
cisa_ics·2017-05-10
Rockwell Automation Stratix 5900
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Rockwell Automation Stratix 5900
Last RevisedMay 10, 2017
Alert CodeICSA-17-094-04
## CVSS v3 10.0
ATTENTION: Remotely exploitable/low skill level to exploit.
Vendor: Rockwell Automation
Equipment: Stratix 5900
Vulnerabilities: Improper Input Validation, Resource Management Errors, Improper Authentication, Path Traversal.
## REPOSTED INFORMATION
This advisory was originally posted to the NCCIC Portal on April 4, 2017, and is being released to the NCCIC/ICS-CERT web site.
## AFFECTED PRODUCTS
Rockwell Automation reports that these vulnerabilities affect the following Strat
CISA ICS
Rockwell Automation Stratix Denial-of-Service and Memory Leak Vulnerabilities
cisa_ics·2016-10-13
Rockwell Automation Stratix Denial-of-Service and Memory Leak Vulnerabilities
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Rockwell Automation Stratix Denial-of-Service and Memory Leak Vulnerabilities
Last RevisedOctober 13, 2016
Alert CodeICSA-16-287-04
## OVERVIEW
Rockwell Automation reports that several of the vulnerabilities contained in Cisco’s semi-annual Cisco IOS and IOS XE Software Security Advisory Bundled PublicationCisco Event Response: September 2016 Semiannual Cisco IOS and IOS XE Software Security Advisory Bundled Publication, https://tools.cisco.com/security/center/viewErp.x?alertId=ERP-56513, web site last accessed October 13, 2016. could also affect Rockwell Automation’s Allen-Brad
Cisco
Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
vendor_cisco·2016-09-28·CVSS 7.8
CVE-2016-6382 [HIGH] CWE-399 Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
Multiple vulnerabilities in the multicast subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition. The issues are in IPv4 Multicast Source Discovery Protocol (MSDP) and IPv6 Protocol Independent Multicast (PIM).
The first vulnerability (Cisco bug ID CSCud36767 (registered customers only)) is due to insufficient checking of MSDP Source-Active (SA) messages received from a configured MSDP peer. An attacker who can send traffic to the IPv4 address of a device could exploit this vulnerability by sending a packet designed to trigger the issue to the affected device. A successful exploit could cause the affected device to restart.
T
Cisco
Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
vendor_cisco
CVE-2016-6382 Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
CVE-2016-6382: Cisco IOS and IOS XE Software Multicast Routing Denial of Service Vulnerabilities
Multiple vulnerabilities in the multicast subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to create a denial of service (DoS) condition. The issues are in IPv4 Multicast Source Discovery Protocol (MSDP) and IPv6 Protocol Independent Multicast (PIM). The first vulnerability (Cisco bug ID CSCud36767 ( registered customers only)) is due to insufficient checking of MSDP Source-Active (SA) messages received from a configured MSDP peer. An attacker who can send traffic to the IPv4 address of a device could exploit this vulnerability by sending a packet designed to trigger the issue to the affected device. A successful exploit could cause the affected device
GHSA
GHSA-6gjm-jpvr-f94p: Cisco IOS 15
ghsa_unreviewed·2022-05-17
CVE-2016-6382 [HIGH] GHSA-6gjm-jpvr-f94p: Cisco IOS 15
Cisco IOS 15.2 through 15.6 and IOS XE 3.6 through 3.17 and 16.1 allow remote attackers to cause a denial of service (device restart) via a malformed IPv6 Protocol Independent Multicast (PIM) register packet, aka Bug ID CSCuy16399.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160928-msdphttp://www.securityfocus.com/bid/93211http://www.securitytracker.com/id/1036914https://ics-cert.us-cert.gov/advisories/ICSA-16-287-04http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160928-msdphttp://www.securityfocus.com/bid/93211http://www.securitytracker.com/id/1036914https://ics-cert.us-cert.gov/advisories/ICSA-16-287-04
2016-10-05
Published