← Back

CVE-2011-4007

nvd nist
Published: May 2, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.4
Vector
AV:N/AC:H/Au:N/C:N/I:N/A:C
Exploitability: 4.9 / Impact: 6.9
Source: NVD

Description

Cisco IOS 15.0 and 15.1 and IOS XE 3.x do not properly handle the "set mpls experimental imposition" command, which allows remote attackers to cause a denial of service (device crash) via network traffic that triggers (1) fragmentation or (2) reassembly, aka Bug ID CSCtr56576.

Affected (21)

Products: Cisco: Ios, Ios Xe
2 products
Ios
Ios Xe
Configuration A
21 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 15.0
Version 15.1
Cisco
Version 3.1.0s
Version 3.1.0sg
Version 3.1.1s
Version 3.1.1sg
Version 3.1.2s
Version 3.1.3s
Version 3.1.4s
Version 3.2.0s
Version 3.2.0sg
Version 3.2.1s
Version 3.2.1sg
Version 3.2.2s
Version 3.3.0s
Version 3.3.1s
Version 3.3.2s
Version 3.3.3s
Version 3.4.0s
Version 3.4.1s
Version 3.5.0s

Timeline

No history available yet.