CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.0. It affects Cisco. It may be remotely exploitable. It may lead to a denial-of-service condition.
CVE
CVE-2015-4293
Severity
MEDIUM
CVSS
5
EPSS
1.81%
Cisco
Original NVD Description
The packet-reassembly implementation in Cisco IOS XE 3.13S and earlier allows remote attackers to cause a denial of service (CPU consumption or packet loss) via fragmented (1) IPv4 or (2) IPv6 packets that trigger ATTN-3-SYNC_TIMEOUT errors after reassembly failures, aka Bug ID CSCuo37957.