Denial of service - CVE-2016-6421
Published: September 28, 2016 / Updated: September 29, 2016
Vulnerability identifier: #VU680
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2016-6421
CWE-ID: CWE-399
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vendor:
Affected software:
Detailed vulnerability description
The vulnerability allows a remote user to cause denial of service on the target system.
The weakness exists due to memory error. By sending specially crafted Open Shortest Path First (OSPF) Link State Advertisement (LSA) attackers can cause the OSPF process restart.
Successful exploitation of the vulnerability may result in denial of service on the vulnerable system.
The weakness exists due to memory error. By sending specially crafted Open Shortest Path First (OSPF) Link State Advertisement (LSA) attackers can cause the OSPF process restart.
Successful exploitation of the vulnerability may result in denial of service on the vulnerable system.
How to mitigate CVE-2016-6421
Workarounds resolving the vulnerability are not available.