QID 317432
QID 317432: Cisco Internetwork Operating System (IOS) XE Software SD-Access Fabric Edge Node Denial of Service (DoS) Vulnerability (cisco-sa-ios-xe-sda-edge-dos-qZWuWXWG)
A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of service (DoS) condition on an affected device.
Affected Products:
This vulnerability affects Cisco IOS XE Software if it is running on a device that is functioning as an SD-Access fabric edge node.
QID Detection Logic (Authenticated):
The check matches Cisco IOS XE version retrieved via Unix Auth using "show version" command.
QID Detection Logic (Unauthenticated):
The check matches Cisco IOS XE version retrieved via SNMP or TCP/IP Fingerprint or NTP or Telnet.
Note: This QID doesn't check for the available SD-Access fabric edge nodes GUI configuration , hence marked potential.
A successful exploit could allow the attacker to cause the device to exhaust CPU resources and stop processing traffic, resulting in a DoS condition.
Customers are advised to refer to cisco-sa-ios-xe-sda-edge-dos-qZWuWXWG for more information.
- cisco-sa-ios-xe-sda-edge-dos-qZWuWXWG -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-xe-sda-edge-dos-qZWuWXWG
CVEs related to QID 317432
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-ios-xe-sda-edge-dos-qZWuWXWG |
|