CVE-2018-0171
Summary
| CVE | CVE-2018-0171 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-03-28 22:29:00 UTC |
| Updated | 2020-09-04 18:25:00 UTC |
| Description | A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to trigger a reload of an affected device, resulting in a denial of service (DoS) condition, or to execute arbitrary code on an affected device. The vulnerability is due to improper validation of packet data. An attacker could exploit this vulnerability by sending a crafted Smart Install message to an affected device on TCP port 4786. A successful exploit could allow the attacker to cause a buffer overflow on the affected device, which could have the following impacts: Triggering a reload of the device, Allowing the attacker to execute arbitrary code on the device, Causing an indefinite loop on the affected device that triggers a watchdog crash. Cisco Bug IDs: CSCvg76186. |
Risk And Classification
EPSS: 0.930310000 probability, percentile 0.997840000 (date 2026-04-02)
CISA KEV: Listed on 2021-11-03; due 2022-05-03; ransomware use Unknown
Problem Types: CWE-787
CISA Known Exploited Vulnerability
| Vendor | Cisco |
|---|---|
| Product | IOS and IOS XE |
| Name | Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability |
| Required Action | Apply updates per vendor instructions. |
| Notes | https://nvd.nist.gov/vuln/detail/CVE-2018-0171 |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco IOS/IOS XE Buffer Overflow in Processing Smart Install Packets Lets Remote Users Execute Arbitrary Code - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Rockwell Automation Stratix and ArmorStratix Switches | CISA | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| Malformed Request | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Rockwell Automation Stratix Industrial Managed Ethernet Switch | ICS-CERT | MISC | ics-cert.us-cert.gov | Third Party Advisory, US Government Resource |
| Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability | CONFIRM | tools.cisco.com | Vendor Advisory |
| Attackers Exploit Cisco Switch Issue as Vendor ... | MISC | www.darkreading.com | Press/Media Coverage |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.