Vulnerability Bulletins

Cisco IOS Software Crafted IPv6 Packet Denial of Service Vulnerability

   
Affected software Cisco
 
A vulnerability in the implementation of the IP version 6 (IPv6) protocol stack in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause I/O memory depletion on an affected device that has IPv6 enabled. The vulnerability is triggered when an affected device processes a malformed IPv6 packet.Cisco has released free software updates that address this vulnerability. There are no workarounds to mitigate this vulnerability.This advisory is available at

More info:

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140326-ipv6?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20IOS%20Software%20Crafted%20IPv6%20Packet%20Denial%20of%20Service%20Vu