CVE-2014-3357

Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allow remote attackers to cause a denial of service (device reload) via malformed mDNS packets, aka Bug ID CSCul90866.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:cisco:ios:15.0:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.1:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.2:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios:15.4:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.3\(.0\)xo:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.3.0se:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.3.1se:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.5.0e:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.5.1e:*:*:*:*:*:*:*
cpe:2.3:o:cisco:ios_xe:3.11.0s:*:*:*:*:*:*:*

History

21 Nov 2024, 02:07

Type Values Removed Values Added
References () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140924-mdns - Vendor Advisory () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140924-mdns - Vendor Advisory
References () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140924-mdns/cvrf/cisco-sa-20140924-mdns_cvrf.xml - () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140924-mdns/cvrf/cisco-sa-20140924-mdns_cvrf.xml -
References () http://www.securityfocus.com/bid/70132 - () http://www.securityfocus.com/bid/70132 -
References () http://www.securitytracker.com/id/1030898 - () http://www.securitytracker.com/id/1030898 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/96182 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/96182 -

Information

Published : 2014-09-25 10:55

Updated : 2024-11-21 02:07


NVD link : CVE-2014-3357

Mitre link : CVE-2014-3357

CVE.ORG link : CVE-2014-3357


JSON object : View

Products Affected

cisco

  • ios_xe
  • ios
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')