Vulnerability Description
The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption and device reload) via malformed IP SLA packets, aka Bug ID CSCtk67073.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 15.1 |
| Cisco | Ios Xe | 2.1.0 |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/viewAlert.x?alertId=24122
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95d4c.sVendor Advisory
- http://www.securitytracker.com/id?1026120
- http://tools.cisco.com/security/center/viewAlert.x?alertId=24122
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080b95d4c.sVendor Advisory
- http://www.securitytracker.com/id?1026120
FAQ
What is CVE-2011-3272?
CVE-2011-3272 is a vulnerability with a CVSS score of 7.8 (HIGH). The IP Service Level Agreement (IP SLA) functionality in Cisco IOS 15.1, and IOS XE 2.1.x through 3.3.x, allows remote attackers to cause a denial of service (memory corruption and device reload) via ...
How severe is CVE-2011-3272?
CVE-2011-3272 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-3272?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios, Cisco Ios Xe.