The RADIUS implementation in Cisco IOS and IOS XE allows remote attackers to cause a denial of service (device reload) via crafted IPv6 Attributes in Access-Accept packets, aka Bug IDs CSCur84322 and CSCur27693. Per <a href"http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0598">this link</a>, authentication is required.
Publication date: Fri, 06 Mar 2015 09:00:00 +0000