CVE-2014-3335: Cisco Asr 9000 RSP440 Router
Medium severity, CVSS 4.6. EPSS: 1.1% chance of exploitation in the next 30 days.
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of packets with multicast destination MAC addresses, which allows remote attackers to cause a denial of service (chip and card hangs) via a crafted packet, aka Bug ID CSCup77750.
Affected products
- Cisco Asr 9000 RSP440 Router
- Cisco Asr 9001
- Cisco Asr 9006
- Cisco Asr 9010
- Cisco Asr 9904
- Cisco Asr 9912
- Cisco Asr 9922
- Cisco IOS XR: up to and including 4.3.2; version 4.3.0 only; version 4.3.1 only
Published 2014-08-26. Last modified 2026-06-17.