CVE-2019-1740: Cisco IOS and IOS XE Software Network-Based Application Recognition Denial of Service Vulnerabilities
A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability are due to a parsing issue on DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through routers that are running an affected version and have NBAR enabled. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1740?
CVE-2019-1740 is classified as a high severity vulnerability due to its potential to cause a device to reload unexpectedly.
How do I fix CVE-2019-1740?
To fix CVE-2019-1740, users should upgrade to the fixed version of the affected Cisco IOS Software or Cisco IOS XE Software as recommended in the security advisory.
Who is affected by CVE-2019-1740?
CVE-2019-1740 affects devices running vulnerable versions of Cisco IOS Software and Cisco IOS XE Software that utilize the Network-Based Application Recognition (NBAR) feature.
What type of vulnerability is CVE-2019-1740?
CVE-2019-1740 is a remote denial of service vulnerability caused by improper parsing of DNS packets.
Can CVE-2019-1740 be exploited remotely?
Yes, CVE-2019-1740 can be exploited by unauthenticated attackers remotely, leading to a device reload.