Lucene search

K
cveCiscoCVE-2017-12211
HistorySep 07, 2017 - 9:29 p.m.

CVE-2017-12211

2017-09-0721:29:00
CWE-399
cisco
web.nvd.nist.gov
28
cisco
ios
vulnerability
snmp
ipv6
high cpu usage
device reload
cve-2017-12211
nvd
cisco bug ids
cscvb14640

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

5.4

Confidence

High

EPSS

0.003

Percentile

67.9%

A vulnerability in the IPv6 Simple Network Management Protocol (SNMP) code of Cisco IOS and Cisco IOS XE Software could allow an authenticated, remote attacker to cause high CPU usage or a reload of the device. The vulnerability is due to IPv6 sub block corruption. An attacker could exploit this vulnerability by polling the affected device IPv6 information. An exploit could allow the attacker to trigger high CPU usage or a reload of the device. Known Affected Releases: Denali-16.3.1. Cisco Bug IDs: CSCvb14640.

Affected configurations

Nvd
Node
ciscoiosMatch3.16.1
OR
ciscoios_xeMatch3.16.1
VendorProductVersionCPE
ciscoios3.16.1cpe:2.3:o:cisco:ios:3.16.1:*:*:*:*:*:*:*
ciscoios_xe3.16.1cpe:2.3:o:cisco:ios_xe:3.16.1:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "Cisco IOS and Cisco IOS XE",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Cisco IOS and Cisco IOS XE"
      }
    ]
  }
]

CVSS2

6.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:N/I:N/A:C

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

5.4

Confidence

High

EPSS

0.003

Percentile

67.9%

Related for CVE-2017-12211