CVE-2014-3322: Cisco Asr 9000 RSP440 Router
Medium severity, CVSS 6.1. EPSS: 1.2% chance of exploitation in the next 30 days.
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via malformed (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCuo68417.
Affected products
- Cisco Asr 9000 RSP440 Router
- Cisco Asr 9001
- Cisco Asr 9006
- Cisco Asr 9010
- Cisco Asr 9904
- Cisco Asr 9912
- Cisco Asr 9922
- Cisco IOS XR: up to and including 4.3.2; version 4.3.0 only; version 4.3.1 only
Published 2014-07-24. Last modified 2026-06-17.