CVE-2023-20027
Summary
| CVE | CVE-2023-20027 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-23 17:15:00 UTC |
| Updated | 2023-11-07 04:05:00 UTC |
| Description | A vulnerability in the implementation of the IPv4 Virtual Fragmentation Reassembly (VFR) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper reassembly of large packets that occurs when VFR is enabled on either a tunnel interface or on a physical interface that is configured with a maximum transmission unit (MTU) greater than 4,615 bytes. An attacker could exploit this vulnerability by sending fragmented packets through a VFR-enabled interface on an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | 1000 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100-4g/6g Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100-4g Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100-4p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100-6g Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100-8p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1100 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1101-4p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1101 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1109-2p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1109-4p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1109 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1111x-8p Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1111x Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 111x Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1120 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1131 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 1160 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4221 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4321 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4331 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4351 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4431 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4451-x Integrated Services Router | - | All | All | All |
| Hardware | Cisco | 4461 Integrated Services Router | - | All | All | All |
| Hardware | Cisco | C8200-1n-4t | - | All | All | All |
| Hardware | Cisco | C8200l-1n-4t | - | All | All | All |
| Hardware | Cisco | C8500l-8s4x | - | All | All | All |
| Application | Cisco | Catalyst 8000v Edge | - | All | All | All |
| Hardware | Cisco | Catalyst 8300-1n1s-4t2x | - | All | All | All |
| Hardware | Cisco | Catalyst 8300-1n1s-6t | - | All | All | All |
| Hardware | Cisco | Catalyst 8300-2n2s-4t2x | - | All | All | All |
| Hardware | Cisco | Catalyst 8300-2n2s-6t | - | All | All | All |
| Application | Cisco | Cloud Services Router 1000v | - | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1e | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.10.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.11.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1c | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.2t | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.12.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.2.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.2.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.10 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.11 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.3.9 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.4.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.5.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.10 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.6.9 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.7.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.8.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.6 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.7 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.8 | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.8a | All | All | All |
| Operating System | Cisco | Ios Xe | 16.9.8c | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.1t | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.1.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1r | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.1v | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.2.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.4 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.4a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.3.5 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.4.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.4.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.4.1b | All | All | All |
| Operating System | Cisco | Ios Xe | 17.4.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.5.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.5.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.6.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.6.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.6.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.6.3 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.6.3a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.7.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.7.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 17.7.2 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.8.1 | All | All | All |
| Operating System | Cisco | Ios Xe | 17.8.1a | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.10s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.2as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.2ts | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.5s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.6s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.7s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.8as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.8s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.10.9s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.11.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.12.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.12.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.12.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.12.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.12.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.10s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.5s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.6as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.6s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.7s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.8s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.13.9s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.14.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.14.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.14.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.14.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.14.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.1cs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.15.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.0cs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.10s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.1as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4bs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4cs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4ds | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4es | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.4gs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.5as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.5bs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.5s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.6bs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.6s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.7as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.7bs | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.7s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.8s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.16.9s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.17.0s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.17.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.17.2s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.17.3s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.17.4s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.18.0as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.18.2asp | All | All | All |
| Operating System | Cisco | Ios Xe | 3.9.0as | All | All | All |
| Operating System | Cisco | Ios Xe | 3.9.1s | All | All | All |
| Operating System | Cisco | Ios Xe | 3.9.2s | All | All | All |
| Hardware | Cisco | Isr 1000 | - | All | All | All |
| Hardware | Cisco | Isr 1100 | - | All | All | All |
| Hardware | Cisco | Isr 1100-4g | - | All | All | All |
| Hardware | Cisco | Isr 1100-4g/6g | - | All | All | All |
| Hardware | Cisco | Isr 1100-4p | - | All | All | All |
| Hardware | Cisco | Isr 1100-6g | - | All | All | All |
| Hardware | Cisco | Isr 1100-8p | - | All | All | All |
| Hardware | Cisco | Isr 1101 | - | All | All | All |
| Hardware | Cisco | Isr 1101-4p | - | All | All | All |
| Hardware | Cisco | Isr 1109 | - | All | All | All |
| Hardware | Cisco | Isr 1109-2p | - | All | All | All |
| Hardware | Cisco | Isr 1109-4p | - | All | All | All |
| Hardware | Cisco | Isr 1111x | - | All | All | All |
| Hardware | Cisco | Isr 1111x-8p | - | All | All | All |
| Hardware | Cisco | Isr 111x | - | All | All | All |
| Hardware | Cisco | Isr 1120 | - | All | All | All |
| Hardware | Cisco | Isr 1131 | - | All | All | All |
| Hardware | Cisco | Isr 1160 | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco IOS XE Software Virtual Fragmentation Reassembly Denial of Service Vulnerability | CISCO | sec.cloudapps.cisco.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 317308 Cisco Internetwork Operating System (IOS) XE Software Virtual Fragmentation Reassembly Denial of Service (DoS) Vulnerability (cisco-sa-ipv4-vfr-dos-CXxtFacb)