CVE-2021-1621: Cisco IOS XE Software Interface Queue Wedge Denial of Service Vulnerability
A vulnerability in the Layer 2 punt code of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a queue wedge on an interface that receives specific Layer 2 frames, resulting in a denial of service (DoS) condition. This vulnerability is due to improper handling of certain Layer 2 frames. An attacker could exploit this vulnerability by sending specific Layer 2 frames on the segment the router is connected to. A successful exploit could allow the attacker to cause a queue wedge on the interface, resulting in a DoS condition.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this Cisco IOS XE Software vulnerability?
The vulnerability ID of this Cisco IOS XE Software vulnerability is CVE-2021-1621.
What is the severity of CVE-2021-1621?
The severity of CVE-2021-1621 is high, with a CVSS score of 7.4.
How does CVE-2021-1621 impact Cisco IOS XE Software?
CVE-2021-1621 allows an unauthenticated attacker to cause a denial of service (DoS) condition on an interface that receives specific Layer 2 frames.
Which version of Cisco IOS XE Software is affected by CVE-2021-1621?
Cisco IOS XE Software version 17.3.1 is affected by CVE-2021-1621.
How can I mitigate the vulnerability in Cisco IOS XE Software CVE-2021-1621?
To mitigate the vulnerability, it is recommended to update to a fixed software release or apply the available workaround as mentioned in the Cisco Security Advisory.