ID

VAR-E-201611-0430


CVE

cve_id:CVE-2016-6441

Trust: 0.3

sources: BID: 94072

TITLE

Cisco IOS XE Software CVE-2016-6441 Buffer Overflow Vulnerability

Trust: 0.3

sources: BID: 94072

DESCRIPTION

Cisco IOS XE Software is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Attackers can exploit this issue to execute arbitrary code or cause reload of the affected device, resulting in denial-of-service conditions.
This issue being tracked by Cisco Bug ID CSCuy15175.
Note: Cisco ASR 900 Series Aggregation Services Routers (ASR902, ASR903, and ASR907) running the vulnerable versions of the IOS XE Software are vulnerable.

Trust: 0.3

sources: BID: 94072

AFFECTED PRODUCTS

vendor:ciscomodel:ios xe software 3.18.1sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios xe software 3.18.0sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios xe software 3.17.2sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios xe software 3.17.1sscope: - version: -

Trust: 0.3

vendor:ciscomodel:ios xe software 3.17.0sscope: - version: -

Trust: 0.3

vendor:ciscomodel:asr907scope:eqversion:0

Trust: 0.3

vendor:ciscomodel:asr903scope:eqversion:0

Trust: 0.3

vendor:ciscomodel:asr902scope:eqversion:0

Trust: 0.3

sources: BID: 94072

EXPLOIT

Reports indicate that exploit is publicly available. Please see the references for more information.

Trust: 0.3

sources: BID: 94072

PRICE

Free

Trust: 0.3

sources: BID: 94072

TYPE

Boundary Condition Error

Trust: 0.3

sources: BID: 94072

CREDITS

Cisco

Trust: 0.3

sources: BID: 94072

EXTERNAL IDS

db:NVDid:CVE-2016-6441

Trust: 0.3

db:BIDid:94072

Trust: 0.3

sources: BID: 94072

REFERENCES

url:https://tools.cisco.com/security/center/content/ciscosecurityadvisory/cisco-sa-20161102-tl1

Trust: 0.3

url:http://www.cisco.com/

Trust: 0.3

sources: BID: 94072

SOURCES

db:BIDid:94072

LAST UPDATE DATE

2022-07-27T09:35:09.517000+00:00


SOURCES UPDATE DATE

db:BIDid:94072date:2016-11-24T01:07:00

SOURCES RELEASE DATE

db:BIDid:94072date:2016-11-02T00:00:00