Vulnerabilities > Cisco > Carrier Routing System

DATE CVE VULNERABILITY TITLE RISK
2019-08-07 CVE-2019-1918 Incorrect Calculation vulnerability in Cisco Carrier Routing System and IOS XR
A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS-IS area to cause a denial of service (DoS) condition.
low complexity
cisco CWE-682
6.1
2019-08-07 CVE-2019-1910 Improper Input Validation vulnerability in Cisco IOS XR
A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS–IS area to cause a denial of service (DoS) condition.
low complexity
cisco CWE-20
7.4
2018-02-08 CVE-2018-0132 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Carrier Routing System 5.3.0.Rout
A vulnerability in the forwarding information base (FIB) code of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause inconsistency between the routing information base (RIB) and the FIB, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-119
5.0
2016-09-17 CVE-2016-6401 Resource Management Errors vulnerability in Cisco Carrier Routing System 5.1.4/5.1Base
Cisco Carrier Routing System (CRS) 5.1 and 5.1.4, as used in CRS Carrier Grade Services for CRS-1 and CRS-3 devices, allows remote attackers to cause a denial of service (line-card reload) via crafted IPv6-over-MPLS packets, aka Bug ID CSCva32494.
5.7
2015-02-21 CVE-2015-0618 Data Processing Errors vulnerability in Cisco Carrier Routing System and IOS XR
Cisco IOS XR 5.0.1 and 5.2.1 on Network Convergence System (NCS) 6000 devices and 5.1.3 and 5.1.4 on Carrier Routing System X (CRS-X) devices allows remote attackers to cause a denial of service (line-card reload) via malformed IPv6 packets with extension headers, aka Bug ID CSCuq95241.
network
cisco CWE-19
7.1
2013-01-31 CVE-2013-1112 Improper Input Validation vulnerability in Cisco Carrier Routing System
Cisco Carrier Routing System (CRS) allows remote attackers to cause a denial of service (packet loss) via short malformed packets that trigger inefficient processing, aka Bug ID CSCud79136.
network
low complexity
cisco CWE-20
5.0
2012-08-06 CVE-2012-1342 Incorrect Authorization vulnerability in Cisco Carrier Routing System 3.9.0/4.0.0/4.1.0
Cisco Carrier Routing System (CRS) 3.9, 4.0, and 4.1 allows remote attackers to bypass ACL entries via fragmented packets, aka Bug ID CSCtj10975.
network
low complexity
cisco CWE-863
5.0
2012-05-02 CVE-2011-3283 Improper Input Validation vulnerability in Cisco Carrier Routing System 3.9.1
Cisco Carrier Routing System 3.9.1 allows remote attackers to cause a denial of service (Metro subsystem crash) via a fragmented GRE packet, aka Bug ID CSCts14887.
network
low complexity
cisco CWE-20
5.0