Vulnerability Description
The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 15.2(2)EB1 on Industrial Ethernet 5000 devices allows remote attackers to cause a denial of service (packet data corruption) via crafted IPv4 ICMP packets, aka Bug ID CSCuy13431.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 15.2\(2\)eb |
| Cisco | Ie-5000-12S12P-10G | - |
| Cisco | Ie-5000-16S12P | - |
| Cisco | Ie-4000-16Gt4G-E | - |
| Cisco | Ie-4000-16T4G-E | - |
| Cisco | Ie-4000-4Gc4Gp4G-E | - |
| Cisco | Ie-4000-4Gs8Gp4G-E | - |
| Cisco | Ie-4000-4S8P4G-E | - |
| Cisco | Ie-4000-4T4P4G-E | - |
| Cisco | Ie-4000-4Tc4G-E | - |
| Cisco | Ie-4000-8Gs4G-E | - |
| Cisco | Ie-4000-8Gt4G-E | - |
| Cisco | Ie-4000-8Gt8Gp4G-E | - |
| Cisco | Ie-4000-8S4G-E | - |
| Cisco | Ie-4000-8T4G-E | - |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20Vendor Advisory
- http://www.securityfocus.com/bid/90665
- http://www.securitytracker.com/id/1035898
- https://ics-cert.us-cert.gov/advisories/ICSA-16-175-01
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20Vendor Advisory
- http://www.securityfocus.com/bid/90665
- http://www.securitytracker.com/id/1035898
- https://ics-cert.us-cert.gov/advisories/ICSA-16-175-01
FAQ
What is CVE-2016-1399?
CVE-2016-1399 is a vulnerability with a CVSS score of 7.5 (HIGH). The packet-processing microcode in Cisco IOS 15.2(2)EA, 15.2(2)EA1, 15.2(2)EA2, and 15.2(4)EA on Industrial Ethernet 4000 devices and 15.2(2)EB and 15.2(2)EB1 on Industrial Ethernet 5000 devices allow...
How severe is CVE-2016-1399?
CVE-2016-1399 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-1399?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios, Cisco Ie-5000-12S12P-10G, Cisco Ie-5000-16S12P, Cisco Ie-4000-16Gt4G-E, Cisco Ie-4000-16T4G-E.