Unrated severityNVD Advisory· Published May 26, 2014· Updated May 6, 2026
CVE-2014-3276
CVE-2014-3276
Description
Cisco Identity Services Engine (ISE) 1.2(.1 patch 2) and earlier does not properly handle deadlock conditions during reception of crafted RADIUS accounting packets from multiple NAS devices, which allows remote authenticated users to cause a denial of service (RADIUS outage) by sourcing these packets from two origins, aka Bug ID CSCuo56780.
Affected products
3cpe:2.3:a:cisco:identity_services_engine_software:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:cisco:identity_services_engine_software:*:*:*:*:*:*:*:*range: <=1.2
- cpe:2.3:a:cisco:identity_services_engine_software:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:identity_services_engine_software:1.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3276nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securitytracker.com/id/1030274nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.