CVE-2017-6603: Cisco Asr 900 Series Firmware

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A vulnerability in Cisco ASR 903 or ASR 920 Series Devices running with an RSP2 card could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on a targeted system because of incorrect IPv6 Packet Processing. More Information: CSCuy94366. Known Affected Releases: 15.4(3)S3.15. Known Fixed Releases: 15.6(2)SP 15.6(1.31)SP.

Affected products

  • Cisco Asr 900 Series Firmware: version 15.4(3)s3.15 only

Published 2017-04-07. Last modified 2026-06-17.