CVE-2019-16018: Cisco IOS XR Software EVPN Operational Routes Denial of Service Vulnerability
A vulnerability in the implementation of Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of a BGP update message that contains crafted EVPN attributes. An attacker could indirectly exploit the vulnerability by sending BGP EVPN update messages with a specific, malformed attribute to an affected system and waiting for a user on the device to display the EVPN operational routes’ status. If successful, the attacker could cause the BGP process to restart unexpectedly, resulting in a DoS condition. The Cisco implementation of BGP accepts incoming BGP traffic only from explicitly defined peers. To exploit this vulnerability, the malicious BGP update message would need to come from a configured, valid BGP peer, or would need to be injected by the attacker into the victim's BGP network on an existing, valid TCP connection to a BGP peer.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this Cisco IOS XR Software vulnerability?
The vulnerability ID for this Cisco IOS XR Software vulnerability is CVE-2019-16018.
What is the severity level of CVE-2019-16018?
The severity level of CVE-2019-16018 is high with a score of 6.5.
What is the affected software for CVE-2019-16018?
The affected software for CVE-2019-16018 is Cisco IOS XR Software 6.6.1 to 6.6.25.
What is the impact of CVE-2019-16018?
CVE-2019-16018 allows an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
How can I fix CVE-2019-16018?
To fix CVE-2019-16018, it is recommended to upgrade to a fixed version of Cisco IOS XR Software.