QID 317177

Date Published: 2022-06-07

QID 317177: Cisco Internetwork Operating System (IOS) XR Software for ASR 9000 Series Routers Lightspeed-Plus Line Cards Denial of Service (DoS)Vulnerability (cisco-sa-lsplus-Z6AQEOjk)

A vulnerability in the data plane microcode of Lightspeed-Plus line cards for Cisco ASR 9000 Series Aggregation Services Routers,
ASR 9902 Compact High-Performance Routers, and ASR 9903 Compact High-Performance Routers
could allow an unauthenticated, remote attacker to cause the line card to reset.

Affected Products
Cisco ASR 9000 Series Aggregation Services Routers if they are running a vulnerable release of Cisco IOS XR 64-bit
Software and have a Lightspeed-Plus-based line card installed.

QID Detection Logic (Authenticated):
The check matches Cisco IOS XR OS version retrieved via Unix Auth using "version" command.

A successful exploit could allow the attacker to cause the Lightspeed-Plus line card to reset,
resulting in a denial of service (DoS) condition for any traffic that traverses that line card.

  • CVSS V3 rated as Critical - 8.6 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution

    Customers are advised to refer to cisco-sa-lsplus-Z6AQEOjk for more information.

    CVEs related to QID 317177

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-lsplus-Z6AQEOjk URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-lsplus-Z6AQEOjk