CVE-2014-3358
Summary
| CVE | CVE-2014-3358 |
|---|---|
| State | PUBLISHED |
| Assigner | cisco |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2014-09-25 10:55:08 UTC |
| Updated | 2026-05-06 22:30:45 UTC |
| Description | Memory leak in Cisco IOS 15.0, 15.1, 15.2, and 15.4 and IOS XE 3.3.xSE before 3.3.2SE, 3.3.xXO before 3.3.1XO, 3.5.xE before 3.5.2E, and 3.11.xS before 3.11.1S allows remote attackers to cause a denial of service (memory consumption, and interface queue wedge or device reload) via malformed mDNS packets, aka Bug ID CSCuj58950. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
NoneAvailability
CompleteAV:N/AC:L/Au:N/C:N/I:N/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Cisco | Ios | 15.0 | All | All | All |
| Operating System | Cisco | Ios | 15.1 | All | All | All |
| Operating System | Cisco | Ios | 15.2 | All | All | All |
| Operating System | Cisco | Ios | 15.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.3.0se | All | All | All |
| Operating System | Cisco | Ios Xe | 3.3.1se | All | All | All |
| Operating System | Cisco | Ios Xe | 3.3\(.0\)xo | All | All | All |
| Operating System | Cisco | Ios Xe | 3.5.0e | All | All | All |
| Operating System | Cisco | Ios Xe | 3.5.1e | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| Multiple Vulnerabilities in Cisco IOS Software Multicast Domain Name System | af854a3a-2127-422b-91ae-364da2661108 | tools.cisco.com | Vendor Advisory |
| Cisco IOS Software mDNS Gateway Memory Leak Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | tools.cisco.com | |
| Cisco IOS mDNS Bugs Let Remote Users Deny Service - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Cisco IOS and IOS XE Software Multicast DNS Gateway Memory Leak Denial of Service Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.