Lucene search

K
cve[email protected]CVE-2016-1344
HistoryMar 26, 2016 - 1:59 a.m.

CVE-2016-1344

2016-03-2601:59:01
CWE-399
web.nvd.nist.gov
33
cve-2016-1344
cisco
ios
ikev2
denial of service
vulnerability
nvd

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

5.7 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.9%

The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417.

Affected configurations

NVD
Node
ciscoios_xeMatch3.3s_3.3.0s
OR
ciscoios_xeMatch3.3s_3.3.1s
OR
ciscoios_xeMatch3.3s_3.3.2s
OR
ciscoios_xeMatch3.3sg_3.3.0sg
OR
ciscoios_xeMatch3.3sg_3.3.1sg
OR
ciscoios_xeMatch3.3sg_3.3.2sg
OR
ciscoios_xeMatch3.3xo_3.3.0xo
OR
ciscoios_xeMatch3.3xo_3.3.1xo
OR
ciscoios_xeMatch3.3xo_3.3.2xo
OR
ciscoios_xeMatch3.4s_3.4.0as
OR
ciscoios_xeMatch3.4s_3.4.0s
OR
ciscoios_xeMatch3.4s_3.4.1s
OR
ciscoios_xeMatch3.4s_3.4.2s
OR
ciscoios_xeMatch3.4s_3.4.3s
OR
ciscoios_xeMatch3.4s_3.4.4s
OR
ciscoios_xeMatch3.4s_3.4.5s
OR
ciscoios_xeMatch3.4s_3.4.6s
OR
ciscoios_xeMatch3.4sg_3.4.0sg
OR
ciscoios_xeMatch3.4sg_3.4.1sg
OR
ciscoios_xeMatch3.4sg_3.4.2sg
OR
ciscoios_xeMatch3.4sg_3.4.3sg
OR
ciscoios_xeMatch3.4sg_3.4.4sg
OR
ciscoios_xeMatch3.4sg_3.4.5sg
OR
ciscoios_xeMatch3.4sg_3.4.6sg
OR
ciscoios_xeMatch3.4sg_3.4.7sg
OR
ciscoios_xeMatch3.5e_3.5.0e
OR
ciscoios_xeMatch3.5e_3.5.1e
OR
ciscoios_xeMatch3.5e_3.5.2e
OR
ciscoios_xeMatch3.5e_3.5.3e
OR
ciscoios_xeMatch3.5s_3.5.0s
OR
ciscoios_xeMatch3.5s_3.5.1s
OR
ciscoios_xeMatch3.5s_3.5.2s
OR
ciscoios_xeMatch3.6e_3.6.0e
OR
ciscoios_xeMatch3.6e_3.6.1e
OR
ciscoios_xeMatch3.6e_3.6.2ae
OR
ciscoios_xeMatch3.6e_3.6.2e
OR
ciscoios_xeMatch3.6e_3.6.3e
OR
ciscoios_xeMatch3.6s_3.6.0s
OR
ciscoios_xeMatch3.6s_3.6.1s
OR
ciscoios_xeMatch3.6s_3.6.2s
OR
ciscoios_xeMatch3.7e_3.7.0e
OR
ciscoios_xeMatch3.7e_3.7.1e
OR
ciscoios_xeMatch3.7e_3.7.2e
OR
ciscoios_xeMatch3.7e_3.7.3e
OR
ciscoios_xeMatch3.7s_3.7.0s
OR
ciscoios_xeMatch3.7s_3.7.1s
OR
ciscoios_xeMatch3.7s_3.7.2s
OR
ciscoios_xeMatch3.7s_3.7.2ts
OR
ciscoios_xeMatch3.7s_3.7.3s
OR
ciscoios_xeMatch3.7s_3.7.4as
OR
ciscoios_xeMatch3.7s_3.7.4s
OR
ciscoios_xeMatch3.7s_3.7.5s
OR
ciscoios_xeMatch3.7s_3.7.6s
OR
ciscoios_xeMatch3.7s_3.7.7s
OR
ciscoios_xeMatch3.8e_3.8.0e
OR
ciscoios_xeMatch3.8e_3.8.1e
OR
ciscoios_xeMatch3.8s_3.8.0s
OR
ciscoios_xeMatch3.8s_3.8.1s
OR
ciscoios_xeMatch3.8s_3.8.2s
OR
ciscoios_xeMatch3.9s_3.9.0as
OR
ciscoios_xeMatch3.9s_3.9.0s
OR
ciscoios_xeMatch3.9s_3.9.1as
OR
ciscoios_xeMatch3.9s_3.9.1s
OR
ciscoios_xeMatch3.9s_3.9.2s
OR
ciscoios_xeMatch3.10s_3.10.0s
OR
ciscoios_xeMatch3.10s_3.10.1s
OR
ciscoios_xeMatch3.10s_3.10.1xbs
OR
ciscoios_xeMatch3.10s_3.10.2s
OR
ciscoios_xeMatch3.10s_3.10.3s
OR
ciscoios_xeMatch3.10s_3.10.4s
OR
ciscoios_xeMatch3.10s_3.10.5s
OR
ciscoios_xeMatch3.10s_3.10.6s
OR
ciscoios_xeMatch3.11s_3.11.0s
OR
ciscoios_xeMatch3.11s_3.11.1s
OR
ciscoios_xeMatch3.11s_3.11.2s
OR
ciscoios_xeMatch3.11s_3.11.3s
OR
ciscoios_xeMatch3.11s_3.11.4s
OR
ciscoios_xeMatch3.12s_3.12.0s
OR
ciscoios_xeMatch3.12s_3.12.1s
OR
ciscoios_xeMatch3.12s_3.12.2s
OR
ciscoios_xeMatch3.12s_3.12.3s
OR
ciscoios_xeMatch3.12s_3.12.4s
OR
ciscoios_xeMatch3.13s_3.13.0as
OR
ciscoios_xeMatch3.13s_3.13.0s
OR
ciscoios_xeMatch3.13s_3.13.1s
OR
ciscoios_xeMatch3.13s_3.13.2as
OR
ciscoios_xeMatch3.13s_3.13.2s
OR
ciscoios_xeMatch3.13s_3.13.3s
OR
ciscoios_xeMatch3.13s_3.13.4s
OR
ciscoios_xeMatch3.14s_3.14.0s
OR
ciscoios_xeMatch3.14s_3.14.1s
OR
ciscoios_xeMatch3.14s_3.14.2s
OR
ciscoios_xeMatch3.14s_3.14.3s
OR
ciscoios_xeMatch3.15s_3.15.0s
OR
ciscoios_xeMatch3.15s_3.15.1cs
OR
ciscoios_xeMatch3.15s_3.15.1s
OR
ciscoios_xeMatch3.15s_3.15.2s
OR
ciscoios_xeMatch3.16s_3.16.0cs
OR
ciscoios_xeMatch3.16s_3.16.0s
OR
ciscoios_xeMatch3.16s_3.16.1as
OR
ciscoios_xeMatch3.16s_3.16.1s
OR
ciscoios_xeMatch3.17s_3.17.0s
OR
lenovothinkcentre_e75s_firmwareRange<m16kt61a
OR
netgearjr6150_firmwareRange<2017-01-06
OR
samsungx14j_firmwareMatcht-ms14jakucb-1102.5
OR
sunopensolarisMatchsnv_124sparc
OR
zyxelgs1900-10hp_firmwareRange<2.50\(aazi.0\)c0
OR
zzinckeymouse_firmwareMatch3.08windows

7.1 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:N/I:N/A:C

5.9 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

5.7 Medium

AI Score

Confidence

High

0.006 Low

EPSS

Percentile

77.9%