First published: Wed Mar 28 2018(Updated: )
A vulnerability in the crypto engine of the Cisco Integrated Services Module for VPN (ISM-VPN) running Cisco IOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient handling of VPN traffic by the affected device. An attacker could exploit this vulnerability by sending crafted VPN traffic to an affected device. A successful exploit could allow the attacker to cause the affected device to hang or crash, resulting in a DoS condition. Cisco Bug IDs: CSCvd39267.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | ||
Cisco IOS Software | ||
All of | ||
Cisco IOS | ||
Any of | ||
Cisco 1000 Integrated Services Router | ||
Cisco 1100-4g\/6g Integrated Services Router | ||
Cisco 1100-4g Integrated Services Router | ||
Cisco 1100-4gltegb Integrated Services Router | ||
Cisco 1100-4gltena Integrated Services Router | ||
Cisco 1100-4p Integrated Services Router | ||
Cisco 1100-6g Integrated Services Router | ||
Cisco 1100-8p Integrated Services Router | ||
Cisco 1100-lte Integrated Services Router | ||
Cisco 1100 Integrated Services Router | ||
Cisco 1101-4p Integrated Services Router | ||
Cisco 1101 Integrated Services Router | ||
Cisco 1109-2p Integrated Services Router | ||
Cisco 1109-4p Integrated Services Router | ||
Cisco 1109 Integrated Services Router | ||
Cisco 1111x-8p Integrated Services Router | ||
Cisco 1111x Integrated Services Router | ||
Cisco 111x Integrated Services Router | ||
Cisco 1120 Integrated Services Router | ||
Cisco 1131 Integrated Services Router | ||
Cisco 1160 Integrated Services Router | ||
Cisco 1801 Integrated Service Router | ||
Cisco 1802 Integrated Service Router | ||
Cisco 1803 Integrated Service Router | ||
Cisco 1811 Integrated Service Router | ||
Cisco 1812 Integrated Service Router | ||
Cisco 1841 Integrated Service Router | ||
Cisco 1861 Integrated Service Router | ||
Cisco 1905 Integrated Services Router | ||
Cisco 1906c Integrated Services Router | ||
Cisco 1921 Integrated Services Router | ||
Cisco 1941 Integrated Services Router | ||
Cisco 1941w Integrated Services Router | ||
Cisco 4000 Integrated Services Router | ||
Cisco 4221 Integrated Services Router | ||
Cisco 4321\/k9-rf Integrated Services Router | ||
Cisco 4321\/k9-ws Integrated Services Router | ||
Cisco 4321\/k9 Integrated Services Router | ||
Cisco 4321 Integrated Services Router | ||
Cisco 4331\/k9-rf Integrated Services Router | ||
Cisco 4331\/k9-ws Integrated Services Router | ||
Cisco 4331\/k9 Integrated Services Router | ||
Cisco 4331 Integrated Services Router | ||
Cisco 4351\/k9-rf Integrated Services Router | ||
Cisco 4351\/k9-ws Integrated Services Router | ||
Cisco 4351\/k9 Integrated Services Router | ||
Cisco 4351 Integrated Services Router | ||
Cisco 4431 Integrated Services Router | ||
Cisco 44461 Integrated Services Router | ||
Cisco 4451-x Integrated Services Router | ||
Cisco 4451 Integrated Services Router | ||
Cisco 4461 Integrated Services Router | ||
Cisco 8101-32fh | ||
Cisco 8101-32h | ||
Cisco 8102-64h | ||
Cisco 8201 | ||
Cisco 8201-32fh | ||
Cisco 8202 | ||
Cisco 8208 | ||
Cisco 8212 | ||
Cisco 8218 | ||
Cisco 8800 12-slot | ||
Cisco 8800 18-slot | ||
Cisco 8800 4-slot | ||
Cisco 8800 8-slot | ||
Cisco 8804 | ||
Cisco 8808 | ||
Cisco 8812 | ||
Cisco 8818 | ||
Cisco 8831 | ||
Cisco 9800-40 | ||
Cisco 9800-80 | ||
Cisco 9800-cl | ||
Cisco 9800-l | ||
Cisco ASR 1000 | ||
Cisco Asr 1000-esp100 | ||
Cisco Asr 1000-esp100-x | ||
Cisco Asr 1000-esp200-x | ||
Cisco Asr 1000-x | ||
Cisco Asr 1001 | ||
Cisco Asr 1001-hx | ||
Cisco Asr 1001-hx R | ||
Cisco Asr 1001-x | ||
Cisco Asr 1001-x R | ||
Cisco Asr 1002 | ||
Cisco Asr 1002-hx | ||
Cisco Asr 1002-hx R | ||
Cisco Asr 1002-x | ||
Cisco Asr 1002-x R | ||
Cisco Asr 1004 | ||
Cisco Asr 1006 | ||
Cisco Asr 1006-x | ||
Cisco Asr 1009-x | ||
Cisco Asr 1013 | ||
Cisco Asr 1023 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-12s-e | ||
Cisco Catalyst 3850-12s-s | ||
Cisco Catalyst 3850-12x48u | ||
Cisco Catalyst 3850-12xs-e | ||
Cisco Catalyst 3850-12xs-s | ||
Cisco Catalyst 3850-16xs-e | ||
Cisco Catalyst 3850-16xs-s | ||
Cisco Catalyst 3850-24p-e | ||
Cisco Catalyst 3850-24p-l | ||
Cisco Catalyst 3850-24p-s | ||
Cisco Catalyst 3850-24pw-s | ||
Cisco Catalyst 3850-24s-e | ||
Cisco Catalyst 3850-24s-s | ||
Cisco Catalyst 3850-24t-e | ||
Cisco Catalyst 3850-24t-l | ||
Cisco Catalyst 3850-24t-s | ||
Cisco Catalyst 3850-24u | ||
Cisco Catalyst 3850-24u-e | ||
Cisco Catalyst 3850-24u-l | ||
Cisco Catalyst 3850-24u-s | ||
Cisco Catalyst 3850-24xs | ||
Cisco Catalyst 3850-24xs-e | ||
Cisco Catalyst 3850-24xs-s | ||
Cisco Catalyst 3850-24xu | ||
Cisco Catalyst 3850-24xu-e | ||
Cisco Catalyst 3850-24xu-l | ||
Cisco Catalyst 3850-24xu-s | ||
Cisco Catalyst 3850-32xs-e | ||
Cisco Catalyst 3850-32xs-s | ||
Cisco Catalyst 3850-48f-e | ||
Cisco Catalyst 3850-48f-l | ||
Cisco Catalyst 3850-48f-s | ||
Cisco Catalyst 3850-48p-e | ||
Cisco Catalyst 3850-48p-l | ||
Cisco Catalyst 3850-48p-s | ||
Cisco Catalyst 3850-48pw-s | ||
Cisco Catalyst 3850-48t-e | ||
Cisco Catalyst 3850-48t-l | ||
Cisco Catalyst 3850-48t-s | ||
Cisco Catalyst 3850-48u | ||
Cisco Catalyst 3850-48u-e | ||
Cisco Catalyst 3850-48u-l | ||
Cisco Catalyst 3850-48u-s | ||
Cisco Catalyst 3850-48xs | ||
Cisco Catalyst 3850-48xs-e | ||
Cisco Catalyst 3850-48xs-f-e | ||
Cisco Catalyst 3850-48xs-f-s | ||
Cisco Catalyst 3850-48xs-s | ||
Cisco Catalyst 3850-nm-2-40g | ||
Cisco Catalyst 3850-nm-8-10g | ||
Cisco Catalyst 8200 | ||
Cisco Catalyst 8300 | ||
Cisco Catalyst 8300-1n1s-4t2x | ||
Cisco Catalyst 8300-1n1s-6t | ||
Cisco Catalyst 8300-2n2s-4t2x | ||
Cisco Catalyst 8300-2n2s-6t | ||
Cisco Catalyst 8500 | ||
Cisco Catalyst 8500-4qc | ||
Cisco Catalyst 8500l | ||
Cisco Catalyst 8510csr | ||
Cisco Catalyst 8510msr | ||
Cisco Catalyst 8540csr | ||
Cisco Catalyst 8540msr | ||
Cisco Catalyst 9200 | ||
Cisco Catalyst 9200cx | ||
Cisco Catalyst 9200l | ||
Cisco Catalyst 9300 | ||
Cisco Catalyst 9300-24p-a | ||
Cisco Catalyst 9300-24p-e | ||
Cisco Catalyst 9300-24s-a | ||
Cisco Catalyst 9300-24s-e | ||
Cisco Catalyst 9300-24t-a | ||
Cisco Catalyst 9300-24t-e | ||
Cisco Catalyst 9300-24u-a | ||
Cisco Catalyst 9300-24u-e | ||
Cisco Catalyst 9300-24ux-a | ||
Cisco Catalyst 9300-24ux-e | ||
Cisco Catalyst 9300-48p-a | ||
Cisco Catalyst 9300-48p-e | ||
Cisco Catalyst 9300-48s-a | ||
Cisco Catalyst 9300-48s-e | ||
Cisco Catalyst 9300-48t-a | ||
Cisco Catalyst 9300-48t-e | ||
Cisco Catalyst 9300-48u-a | ||
Cisco Catalyst 9300-48u-e | ||
Cisco Catalyst 9300-48un-a | ||
Cisco Catalyst 9300-48un-e | ||
Cisco Catalyst 9300-48uxm-a | ||
Cisco Catalyst 9300-48uxm-e | ||
Cisco Catalyst 9300l | ||
Cisco Catalyst 9300l-24p-4g-a | ||
Cisco Catalyst 9300l-24p-4g-e | ||
Cisco Catalyst 9300l-24p-4x-a | ||
Cisco Catalyst 9300l-24p-4x-e | ||
Cisco Catalyst 9300l-24t-4g-a | ||
Cisco Catalyst 9300l-24t-4g-e | ||
Cisco Catalyst 9300l-24t-4x-a | ||
Cisco Catalyst 9300l-24t-4x-e | ||
Cisco Catalyst 9300l-48p-4g-a | ||
Cisco Catalyst 9300l-48p-4g-e | ||
Cisco Catalyst 9300l-48p-4x-a | ||
Cisco Catalyst 9300l-48p-4x-e | ||
Cisco Catalyst 9300l-48t-4g-a | ||
Cisco Catalyst 9300l-48t-4g-e | ||
Cisco Catalyst 9300l-48t-4x-a | ||
Cisco Catalyst 9300l-48t-4x-e | ||
Cisco Catalyst 9300l Stack | ||
Cisco Catalyst 9300lm | ||
Cisco Catalyst 9300x | ||
Cisco Catalyst 9400 | ||
Cisco Catalyst 9400 Supervisor Engine-1 | ||
Cisco Catalyst 9407r | ||
Cisco Catalyst 9410r | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst 9500h | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst 9600 Supervisor Engine-1 | ||
Cisco Catalyst 9600x | ||
Cisco Catalyst 9800 | ||
Cisco Catalyst 9800-40 | ||
Cisco Catalyst 9800-40 Wireless Controller | ||
Cisco Catalyst 9800-80 | ||
Cisco Catalyst 9800-80 Wireless Controller | ||
Cisco Catalyst 9800-cl | ||
Cisco Catalyst 9800-l | ||
Cisco Catalyst 9800-l-c | ||
Cisco Catalyst 9800-l-f | ||
Cisco Catalyst 9800 Embedded Wireless Controller | ||
Cisco Catalyst Ie3200 Rugged Switch | ||
Cisco Catalyst Ie3300 Rugged Switch | ||
Cisco Catalyst Ie3400 Heavy Duty Switch | ||
Cisco Catalyst Ie3400 Rugged Switch | ||
Cisco Catalyst Ie9300 | ||
Cisco Cbr8 Converged Broadband Router | ||
Cisco Cloud Services Router 1000v | ||
Cisco Esr-6300-con-k9 | ||
Cisco Esr-6300-ncp-k9 | ||
Cisco ESR6300 | ||
Cisco Integrated Services Virtual Router |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Cisco IOS Software vulnerability is CVE-2018-0154.
The title of the vulnerability is 'Cisco IOS Software Integrated Services Module for VPN Denial-of-Service Vulnerability'.
The severity of CVE-2018-0154 is high with a severity value of 7.5.
An unauthenticated, remote attacker can exploit this vulnerability by causing a denial of service (DoS) condition on an affected device.
You can find more information about this vulnerability on the Cisco Security Advisory page or on the SecurityFocus and SecurityTracker websites.