VYPR
Unrated severityNVD Advisory· Published Aug 29, 2015· Updated Jun 17, 2026

CVE-2015-6273

CVE-2015-6273

Description

Cisco IOS XE before 3.1.2S on ASR 1000 devices mishandles the automatic setup of Virtual Fragment Reassembly (VFR) by certain firewall and NAT components, which allows remote attackers to cause a denial of service (Embedded Services Processor crash) via crafted IP packets, aka Bug IDs CSCtf87624, CSCte93229, CSCtd19103, and CSCti63623.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:o:cisco:ios_xe:2.2.1:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:cisco:ios_xe:2.2.1:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios_xe:2.2.2:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios_xe:2.2.3:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios_xe:3.1.0s:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios_xe:3.1.1s:*:*:*:*:*:*:*
    • (no CPE)range: <3.1.2S

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.