CVE-2013-1164
Summary
| CVE | CVE-2013-1164 |
|---|---|
| State | PUBLISHED |
| Assigner | cisco |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-04-11 10:55:01 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Cisco IOS XE 3.4 before 3.4.4S, 3.5, and 3.6 on 1000 series Aggregation Services Routers (ASR) does not properly implement the Cisco Multicast Leaf Recycle Elimination (MLRE) feature, which allows remote attackers to cause a denial of service (card reload) via fragmented IPv6 multicast packets, aka Bug ID CSCtz97563. |
Risk And Classification
Primary CVSS: v2.0 7.8 from [email protected]
AV:N/AC:L/Au:N/C:N/I:N/A:C
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
CompleteAV:N/AC:L/Au:N/C:N/I:N/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | Asr 1001 | - | All | All | All |
| Hardware | Cisco | Asr 1002 | - | All | All | All |
| Hardware | Cisco | Asr 1002-x | - | All | All | All |
| Hardware | Cisco | Asr 1004 | - | All | All | All |
| Hardware | Cisco | Asr 1006 | - | All | All | All |
| Hardware | Cisco | Asr 1013 | - | All | All | All |
| Operating System | Cisco | Ios Xe | 3.4.0as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.4.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.4.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.4.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.4.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.5.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.6.0s | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco Security Advisory: Multiple Vulnerabilities in Cisco IOS XE Software for 1000 Series Aggregation Services Routers | af854a3a-2127-422b-91ae-364da2661108 | tools.cisco.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.