MEDIUM · 5.0

CVE-2013-6701

The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to ca...

Vulnerability Description

The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to cause a denial of service (watchdog timeout and TNC reset) via a flood of network traffic, aka Bug ID CSCud97155.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
CiscoCisco Ons 15454 System Software9.0
CiscoOns 15454 MsppAll versions
CiscoOns 15454 MstpAll versions
CiscoOns 15454E Optical Transport PlatformAll versions
CiscoOns 15454All versions
CiscoOns 15454 Multiservice Transport PlatformAll versions
CiscoOns 15454 Sdh Multiservice Provisioning PlatformAll versions
CiscoOns 15454 Sonet Multiservice Provisioning PlatformAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-6701?

CVE-2013-6701 is a vulnerability with a CVSS score of 5.0 (MEDIUM). The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to ca...

How severe is CVE-2013-6701?

CVE-2013-6701 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-6701?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Cisco Ons 15454 System Software, Cisco Ons 15454 Mspp, Cisco Ons 15454 Mstp, Cisco Ons 15454E Optical Transport Platform, Cisco Ons 15454.