cisco-sa-20190417-iosxr-pim-dos: Cisco IOS XR Software Protocol Independent Multicast Denial of Service Vulnerability
A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the PIM process to restart, resulting in a denial of service condition on an affected device. The vulnerability is due to the incorrect processing of crafted AutoRP packets. An attacker could exploit this vulnerability by sending crafted packets to port UDP 496 on a reachable IP address on the device. A successful exploit could allow the attacker to cause the PIM process to restart. There are workarounds that address this vulnerability. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190417-iosxr-pim-dos
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of cisco-sa-20190417-iosxr-pim-dos?
The cisco-sa-20190417-iosxr-pim-dos vulnerability is considered critical due to its potential to cause a denial of service.
How do I fix cisco-sa-20190417-iosxr-pim-dos?
To mitigate cisco-sa-20190417-iosxr-pim-dos, you should apply the recommended patches or upgrades provided by Cisco for IOS XR Software.
Who is affected by cisco-sa-20190417-iosxr-pim-dos?
Devices running vulnerable versions of Cisco IOS XR Software that utilize the PIM feature are affected by cisco-sa-20190417-iosxr-pim-dos.
What type of attack does cisco-sa-20190417-iosxr-pim-dos facilitate?
cisco-sa-20190417-iosxr-pim-dos facilitates a denial of service attack by allowing an unauthenticated remote attacker to restart the PIM process.
Is authentication required to exploit cisco-sa-20190417-iosxr-pim-dos?
No, cisco-sa-20190417-iosxr-pim-dos can be exploited by an unauthenticated remote attacker.