VDB

CVE-2013-2779

CVE-2013-2779 PUBLISHED CVSS 7.800000190734863 HIGH

Cisco IOS XE 3.4 before 3.4.5S, and 3.5 through 3.7 before 3.7.1S, on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 MVPN (aka MVPNv6) packets, aka Bug ID CSCub34945, a different vulnerability than CVE-2013-1164.

EPSS 0.43% · 62.7th percentile

Risk Scores

CVSS 2.0
7.800000190734863
EPSS Score
0.43%
62.7th percentile

Affected Products

VendorProductVersions
ciscoasr_1004
ciscoios_xe3.4.0s, 3.4.1s, 3.4.2s
ciscoasr_1002-x
ciscoasr_1006
ciscoasr_1001
ciscoasr_1023_router
ciscoasr_1002_fixed_router
ciscoasr_1013
ciscoasr_1002
n/an/an/a

Timeline

  • Apr 11, 2013 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Sep 3, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 8, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 2, 2023 EPSS Score
  • May 25, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›