CVE-2022-20692
Summary
| CVE | CVE-2022-20692 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-04-15 15:15:00 UTC |
| Updated | 2023-11-07 03:42:00 UTC |
| Description | A vulnerability in the NETCONF over SSH feature of Cisco IOS XE Software could allow a low-privileged, authenticated, remote attacker to cause a denial of service condition (DoS) on an affected device. This vulnerability is due to insufficient resource management. An attacker could exploit this vulnerability by initiating a large number of NETCONF over SSH connections. A successful exploit could allow the attacker to exhaust resources, causing the device to reload and resulting in a DoS condition on an affected device. |
Risk And Classification
Problem Types: CWE-400
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Cisco | Ios Xe | 16.10.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1d | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1e | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1f | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1g | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1t | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1w | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1x | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1y | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1z | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1z1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1z2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2t | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.3a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.4a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.5a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.5b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.6a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.10 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.11 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.5b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.9 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.10 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.4a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.5a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.5b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.7a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.9 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1d | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1e | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1d | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.2a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3h | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.4c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.5f | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1t | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1r | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1v | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.1xbs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.2xbs | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 20220413 Cisco IOS XE Software NETCONF Over SSH Denial of Service Vulnerability | CISCO | tools.cisco.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 317150 Cisco Internetwork Operating System (IOS) XE Software NETCONF Over SSH Denial of Service (DoS) Vulnerability (cisco-sa-ncossh-dos-ZAkfOdq8)