← Back

CVE-2016-6385

nvd nist
Published: Oct 5, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Memory leak in the Smart Install client implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.2 through 3.8 allows remote attackers to cause a denial of service (memory consumption) via crafted image-list parameters, aka Bug ID CSCuy82367.

Affected (190)

Products: Cisco: Ios, Ios Xe
2 products
Ios
Ios Xe
Configuration A
190 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 12.2(35)ex1
Version 12.2(35)ex2
Version 12.2(35)ex
Version 12.2(35)se1
Version 12.2(35)se2
Version 12.2(35)se3
Version 12.2(35)se4
Version 12.2(35)se5
Version 12.2(35)se
Version 12.2(37)ex
Version 12.2(37)ey
Version 12.2(37)se1
Version 12.2(37)se
Version 12.2(40)ex1
Version 12.2(40)ex2
Version 12.2(40)ex3
Version 12.2(40)ex
Version 12.2(40)se1
Version 12.2(40)se2
Version 12.2(40)se
Version 12.2(44)ex1
Version 12.2(44)ex
Version 12.2(44)ey
Version 12.2(44)se1
Version 12.2(44)se2
Version 12.2(44)se3
Version 12.2(44)se4
Version 12.2(44)se5
Version 12.2(44)se6
Version 12.2(44)se
Version 12.2(46)ex
Version 12.2(46)ey
Version 12.2(46)se1
Version 12.2(46)se2
Version 12.2(46)se
Version 12.2(50)se1
Version 12.2(50)se2
Version 12.2(50)se3
Version 12.2(50)se4
Version 12.2(50)se5
Version 12.2(50)se
Version 12.2(52)ex1
Version 12.2(52)ex
Version 12.2(52)se1
Version 12.2(52)se
Version 12.2(53)ex
Version 12.2(53)ey
Version 12.2(53)ez
Version 12.2(53)se1
Version 12.2(53)se2
Version 12.2(53)se
Version 12.2(54)se
Version 12.2(55)ex1
Version 12.2(55)ex2
Version 12.2(55)ex3
Version 12.2(55)ex
Version 12.2(55)ey
Version 12.2(55)ez
Version 12.2(55)se10
Version 12.2(55)se1
Version 12.2(55)se2
Version 12.2(55)se3
Version 12.2(55)se4
Version 12.2(55)se5
Version 12.2(55)se6
Version 12.2(55)se7
Version 12.2(55)se8
Version 12.2(55)se9
Version 12.2(55)se
Version 12.2(58)ex
Version 12.2(58)ey1
Version 12.2(58)ey2
Version 12.2(58)ey
Version 12.2(58)ez
Version 12.2(58)se1
Version 12.2(58)se2
Version 12.2(58)se
Version 12.2(60)ez1
Version 12.2(60)ez2
Version 12.2(60)ez3
Version 12.2(60)ez4
Version 12.2(60)ez5
Version 12.2(60)ez6
Version 12.2(60)ez7
Version 12.2(60)ez8
Version 12.2(60)ez
Version 15.0(1)ex
Version 15.0(1)ey1
Version 15.0(1)ey2
Version 15.0(1)ey
Version 15.0(1)se1
Version 15.0(1)se2
Version 15.0(1)se3
Version 15.0(1)se
Version 15.0(2)eb
Version 15.0(2)ec
Version 15.0(2)ed1
Version 15.0(2)ed
Version 15.0(2)eh
Version 15.0(2)ej1
Version 15.0(2)ej
Version 15.0(2)ek1
Version 15.0(2)ek
Version 15.0(2)ex10
Version 15.0(2)ex1
Version 15.0(2)ex2
Version 15.0(2)ex3
Version 15.0(2)ex4
Version 15.0(2)ex5
Version 15.0(2)ex8
Version 15.0(2)ex
Version 15.0(2)ey1
Version 15.0(2)ey2
Version 15.0(2)ey3
Version 15.0(2)ey
Version 15.0(2)ez
Version 15.0(2)se1
Version 15.0(2)se2
Version 15.0(2)se3
Version 15.0(2)se4
Version 15.0(2)se5
Version 15.0(2)se6
Version 15.0(2)se7
Version 15.0(2)se9
Version 15.0(2)se
Version 15.0(2a)ex5
Version 15.0(2a)se9
Version 15.1(2)sg1
Version 15.1(2)sg2
Version 15.1(2)sg3
Version 15.1(2)sg4
Version 15.1(2)sg5
Version 15.1(2)sg6
Version 15.1(2)sg7
Version 15.1(2)sg
Version 15.2(1)e1
Version 15.2(1)e2
Version 15.2(1)e3
Version 15.2(1)e
Version 15.2(1)ey
Version 15.2(2)e1
Version 15.2(2)e2
Version 15.2(2)e4
Version 15.2(2)e
Version 15.2(2)eb1
Version 15.2(2)eb2
Version 15.2(2)eb
Version 15.2(2a)e1
Version 15.2(3)e1
Version 15.2(3)e2
Version 15.2(3)e3
Version 15.2(3)e
Version 15.2(3a)e
Version 15.2(3m)e2
Version 15.2(3m)e3
Version 15.2(4)e1
Version 15.2(4)e
Version 15.2(4m)e1
Cisco
Version 3.2.0ja
Version 3.2.0se
Version 3.2.1se
Version 3.2.2se
Version 3.2.3se
Version 3.3.0se
Version 3.3.0xo
Version 3.3.1se
Version 3.3.1xo
Version 3.3.2se
Version 3.3.2xo
Version 3.3.3se
Version 3.3.4se
Version 3.3.5se
Version 3.5.0e
Version 3.5.1e
Version 3.5.2e
Version 3.5.3e
Version 3.6.0e
Version 3.6.1e
Version 3.6.2ae
Version 3.6.2e
Version 3.6.3e
Version 3.6.4e
Version 3.7.0e
Version 3.7.1e
Version 3.7.2e
Version 3.7.3e
Version 3.7.5e
Version 3.8.0e
Version 3.8.1e
Version 3.8.2e

Related CWEs

References (8)

Source: psirt@cisco.com
Third Party AdvisoryVDB Entry
Source: psirt@cisco.com
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.