Cisco IOS 15.4S, 15.4SN, and 15.5S and IOS XE 3.13S and 3.14S allow remote attackers to cause a denial of service (device crash) by including an IA_NA option in a DHCPv6 Solicit message on the local network, aka Bug ID CSCur29956.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0708
Reference (s):
- CISCO:20150428 Cisco IOS Software and Cisco IOS XE Software Crafted DHCPv6 Sequence Denial of Service Vulnerability
- URL: http://tools.cisco.com/security/center/viewAlert.x?alertId=38543
- SECTRACK:1032210
- URL: http://www.securitytracker.com/id/1032210