CVE-2013-5543: Cisco Asr 1001
High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.
Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Based Firewall (ZBFW) component, aka Bug ID CSCtt26470.
Affected products
- Cisco Asr 1001
- Cisco Asr 1002
- Cisco Asr 1002-X
- Cisco Asr 1004
- Cisco Asr 1006
- Cisco Asr 1023 Router
- Cisco IOS XE: version 3.4.0as only; version 3.4.0s only; version 3.4.1s only
Published 2013-10-31. Last modified 2026-06-16.