← Back

CVE-2015-6432

nvd nist
Published: Jan 5, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Cisco IOS XR 4.2.0, 4.3.0, 5.0.0, 5.1.0, 5.2.0, 5.2.2, 5.2.4, 5.3.0, and 5.3.2 does not properly restrict the number of Path Computation Elements (PCEs) for OSPF LSA opaque area updates, which allows remote attackers to cause a denial of service (device reload) via a crafted update, aka Bug ID CSCuw83486.

Affected (9)

Products: Cisco: Ios Xr
1 product
Ios Xr
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 4.2.0
Version 4.3.0
Version 5.0.0
Version 5.1.0
Version 5.2.0
Version 5.2.2
Version 5.2.4
Version 5.3.0
Version 5.3.2

Related CWEs

References (4)

Timeline

No history available yet.