Denial of service - CVE-2016-6401

 

Denial of service - CVE-2016-6401

Published: September 16, 2016


Vulnerability identifier: #VU482
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2016-6401
CWE-ID: CWE-399
Exploitation vector: Adjecent network
Exploit availability: No public exploit available
Vendor:
Affected software:

Detailed vulnerability description

The vulnerability allows unauthenticated, adjacent user to reload line card on the target system.
The weakness exists due to logic error caused by IPv6 sent over MPLS packet and trigerring a line card reload.
Successful exploitattion of the vulnerability leads to affected line card reload.

How to mitigate CVE-2016-6401

Cybersecurity Help is currently unaware of any official patch, which addresses this vulnerability.


Sources