Vulnerability Bulletins |
Cisco IOS and Cisco IOS XE Software OpenSSH TCP Denial of Service Vulnerability |
|
| Affected software | Cisco |
|
A vulnerability in the handling of Secure Shell (SSH) TCP packets in the Cisco IOS and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a partial denial of service (DoS) condition due to low memory on the device.The vulnerability is due to the handling of out-of-order, or otherwise invalid, TCP packets on an SSH connection to the device. An attacker could exploit this vulnerability by connecting via SSH to the device and then crafting TCP packets which are out of More info: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160620-isr?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20IOS%20and%20Cisco%20IOS%20XE%20Software%20OpenSSH%20TCP%20Denial%20of% |
|






