First published: Mon Oct 10 2022(Updated: )
A vulnerability in the egress MPLS packet processing function of Cisco IOS XE Software for Cisco Catalyst 3650, Catalyst 3850, and Catalyst 9000 Family Switches could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient input validation of IPv4 traffic. An attacker could exploit this vulnerability by sending a malformed packet out of an affected MPLS-enabled interface. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE Web UI | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12x48UQ | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12x48UQ-S | ||
Cisco Catalyst 3650-12X48UR | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12X48UR-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-12x48UZ-L | ||
Cisco Catalyst 3650-12x48uz-s | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24PD-S | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24PS-E | ||
Cisco Catalyst 3650-24PS-L | ||
Cisco Catalyst 3650-24PS | ||
Cisco Catalyst 3650-24TD-E | ||
Cisco Catalyst 3650-24TD-L | ||
Cisco Catalyst 3650-24TD Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-24TS-L | ||
Cisco Catalyst 3650-24TS-S | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQ-E | ||
Cisco Catalyst 3650-48FQ-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQM Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48FQM Switch | ||
Cisco Catalyst 3650 Series Switch | ||
Cisco Catalyst 3650 Series Switch WS-C3650-48FS | ||
Cisco Catalyst 3650 Series Switch WS-C3650-48FS | ||
Cisco Catalyst 3650-48PD-E | ||
Cisco Catalyst 3650-48PD | ||
Cisco Catalyst 3650-48PD-S | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48PQ-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-48PS-L | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 Series | ||
Cisco Catalyst 3650-48TQ-S | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650-48TS Switch | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3650 | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3650-8X24UQ | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-12X48U-E | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 9300-24s-e Firmware | ||
Cisco Catalyst 3850-24S-S | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24T-L | ||
Cisco Catalyst 3850-24T-S | ||
Cisco Catalyst 3850-24U | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24XS | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850-24XU | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48F-E | ||
Cisco Catalyst 3850-48F-L | ||
Cisco Catalyst 3850-48F-S | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48P-S | ||
Cisco Catalyst 3850-48PW-S | ||
Cisco Catalyst 3850-48T-E | ||
Cisco Catalyst 3850-48T-L | ||
Cisco Catalyst 3850 Series | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48U-E | ||
Cisco Catalyst 3850-48U | ||
Cisco Catalyst 3850-48U | ||
Cisco Catalyst 3850-48XS | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850-48XS | ||
Cisco Catalyst 3850-48XS | ||
Cisco Catalyst 3850-48XS-S | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 3850 | ||
Cisco Catalyst 9300 Firmware | ||
Cisco Catalyst 9300-24p-a Firmware | ||
Cisco Catalyst 9300-24p-e Firmware | ||
Cisco Catalyst 9300-24s-a Firmware | ||
Cisco Catalyst 9300-24s-e Firmware | ||
Cisco Catalyst 9300-24t-a Firmware | ||
Cisco Catalyst 9300-24t-e Firmware | ||
Cisco Catalyst 9300-24u-a Firmware | ||
Cisco Catalyst 9300-24u-e Firmware | ||
Cisco Catalyst 9300-24ux-a Firmware | ||
Cisco Catalyst 9300-24ux-e Firmware | ||
Cisco Catalyst 9300-48p-a Firmware | ||
Cisco Catalyst 9300-48p-e Firmware | ||
Cisco Catalyst 9300-48s-a Firmware | ||
Cisco Catalyst 9300-48s-e Firmware | ||
Cisco Catalyst 9300-48t-a Firmware | ||
Cisco Catalyst 9300-48t-e Firmware | ||
Cisco Catalyst 9300-48u-a Firmware | ||
Cisco Catalyst 9300-48u-e Firmware | ||
Cisco Catalyst 9300-48un-a Firmware | ||
Cisco Catalyst 9300-48un-e Firmware | ||
Cisco Catalyst 9300-48uxm-a Firmware | ||
Cisco Catalyst 9300-48uxm-e Firmware | ||
Cisco Catalyst 9300l Firmware | ||
Cisco Catalyst 9300L-24P-4G-A Firmware | ||
Cisco Catalyst 9300l-24p-4g-e Firmware | ||
Cisco Catalyst 9300L-24P-4X-A Firmware | ||
Cisco Catalyst 9300l-24p-4x-e Firmware | ||
Cisco Catalyst 9300l-24t-4g-a Firmware | ||
Cisco Catalyst 9300L-24T-4G-E Firmware | ||
Cisco Catalyst 9300l-24t-4x-a Firmware | ||
Cisco Catalyst 9300L-24T-4X-E Firmware | ||
Cisco Catalyst 9300L-48P-4G-A Firmware | ||
Cisco Catalyst 9300l-48p-4g-e Firmware | ||
Cisco Catalyst 9300l-48p-4x-a Firmware | ||
Cisco Catalyst 9300L-48P-4X-E Firmware | ||
Cisco Catalyst 9300l-48t-4g-a Firmware | ||
Cisco Catalyst 9300l-48t-4g-e Firmware | ||
Cisco Catalyst 9300l-48t-4x-a Firmware | ||
Cisco Catalyst 9300L-48T-4X-E Firmware | ||
Cisco Catalyst 9300lm Firmware | ||
Cisco Catalyst 9300x Firmware | ||
Cisco Catalyst 9400 | ||
Cisco Catalyst 9500 Series | ||
Cisco Catalyst 9500H | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst 3850-12X48U-E | ||
Cisco Catalyst 3850-12X48U-L | ||
Cisco Catalyst 3850-12X48U-S | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-12Q-A | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-16X-A | ||
Cisco Catalyst 9500 Series | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-24Q-A | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-24Y4C | ||
Cisco Catalyst 9500 | ||
Cisco Catalyst C9500-32QC | ||
Cisco Catalyst C9500-40x | ||
Cisco Catalyst 9500-40X-A | ||
Cisco Catalyst 9500-40X-E | ||
Cisco Catalyst C9500-48Y4C | ||
Cisco Catalyst c9600-lc-24c | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst 9600 | ||
Cisco Catalyst c9600-lc-48yl |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-20870 is a vulnerability in the egress MPLS packet processing function of Cisco IOS XE Software for Cisco Catalyst switches.
CVE-2022-20870 has a severity value of 8.6, categorized as high severity.
Cisco Catalyst 3650, Catalyst 3850, and Catalyst 9000 Family Switches are affected by CVE-2022-20870.
An unauthenticated, remote attacker could exploit CVE-2022-20870 to cause a denial of service by making an affected device reload unexpectedly.