← Back

CVE-2021-1353

nvd nist
Published: Jan 20, 2021Modified: Nov 21, 2024

JSON object

Loading...
8.6
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 4.0
Source: NVD

Description

A vulnerability in the IPv4 protocol handling of Cisco StarOS could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a memory leak that occurs during packet processing. An attacker could exploit this vulnerability by sending a series of crafted IPv4 packets through an affected device. A successful exploit could allow the attacker to exhaust the available memory and cause an unexpected restart of the npusim process, leading to a DoS condition on the affected device.

Affected (2)

2 products
Staros
Configuration A
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Before 21.22.0
Running on/withPlatform Versions
Cisco
Asr 5000
All versions
Cisco
Asr 5500
All versions
Cisco
Asr 5700
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.