CVE-2017-3803: Medium severity Cisco IOS vulnerability
A vulnerability in the Cisco IOS Software forwarding queue of Cisco 2960X and 3750X switches could allow an unauthenticated, adjacent attacker to cause a memory leak in the software forwarding queue that would eventually lead to a partial denial of service (DoS) condition. More Information: CSCva72252. Known Affected Releases: 15.2(2)E3 15.2(4)E1. Known Fixed Releases: 15.2(2)E6 15.2(4)E3 15.2(5)E1 15.2(5.3.28i)E1 15.2(6.0.49i)E 3.9(1)E.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 15.2(2)E6 - Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 15.2(4)E3 - Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 15.2(5)E1 - Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 15.2(5.3.28i)E1 - Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 15.2(6.0.49i)E - Upgrade
Upgrade
Cisco IOS Softwareto a version that resolves this vulnerability.Fixed in 3.9(1)E - Compensating control
Mitigate partial DoS risk from an unauthenticated adjacent attacker targeting the IOS forwarding queue by restricting network adjacency/access to Cisco 2960X and 3750X management/adjacent network paths (e.g., limit which hosts/subnets can reach the affected surfaces).
- Operational
After upgrading Cisco IOS Software to one of the fixed releases, verify device stability (e.g., check for forwarding-queue memory leak symptoms/partial DoS) following exposure to the adjacent attacker condition.
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3803?
CVE-2017-3803 has been rated with a CVSS base score that indicates a moderate risk for potential disruptions.
How do I fix CVE-2017-3803?
To remediate CVE-2017-3803, upgrade to the affected Cisco IOS software versions that are specified in the advisory.
What systems are affected by CVE-2017-3803?
CVE-2017-3803 affects the Cisco IOS Software running on the 2960X and 3750X switch models.
What impact does CVE-2017-3803 have on my network?
CVE-2017-3803 can cause a memory leak that may lead to a partial denial of service condition in your network.
Is authentication required to exploit CVE-2017-3803?
No, CVE-2017-3803 can be exploited by an unauthenticated, adjacent attacker, making it particularly concerning.