Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via an ICMP ECHO REQUEST (ping) with the IP Record Route option set.
https://exchange.xforce.ibmcloud.com/vulnerabilities/7298
http://www.cisco.com/warp/public/707/CBOS-multiple2-pub.html