CVE-2018-0175: Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability
Format string vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-0175.
What is the severity of CVE-2018-0175?
The severity of CVE-2018-0175 is high with a severity value of 8.
What is the affected software for CVE-2018-0175?
The affected software for CVE-2018-0175 is Cisco IOS, XR, and XE Software version 15.4(3)m4.1.
How can an unauthenticated attacker exploit CVE-2018-0175?
An unauthenticated attacker can exploit CVE-2018-0175 by sending malicious requests to the Link Layer Discovery Protocol (LLDP) subsystem.
Are there any known references for CVE-2018-0175?
Yes, there are references available for CVE-2018-0175. You can find them at the following URLs: [Reference 1](http://www.securityfocus.com/bid/103564), [Reference 2](http://www.securitytracker.com/id/1040586), [Reference 3](https://ics-cert.us-cert.gov/advisories/ICSA-18-107-03).