cisco-sa-comp3acl-vGmp6BQ3: Cisco IOS XR Software Compression ACL Bypass Vulnerability
A vulnerability in the classic access control list (ACL) compression feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass the protection that is offered by a configured ACL on an affected device.This vulnerability is due to incorrect destination
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-comp3acl-vGmp6BQ3?
The severity of cisco-sa-comp3acl-vGmp6BQ3 is considered high as it allows an unauthenticated attacker to bypass ACL protections.
How do I fix cisco-sa-comp3acl-vGmp6BQ3?
To fix cisco-sa-comp3acl-vGmp6BQ3, update your Cisco IOS XR Software to the latest patched version provided by Cisco.
Which devices are affected by cisco-sa-comp3acl-vGmp6BQ3?
Devices running Cisco IOS XR Software with the classic ACL compression feature enabled are affected by cisco-sa-comp3acl-vGmp6BQ3.
What is the impact of cisco-sa-comp3acl-vGmp6BQ3?
The impact of cisco-sa-comp3acl-vGmp6BQ3 is that it allows attackers to bypass access controls and potentially gain unauthorized access to network resources.
Is authentication required to exploit cisco-sa-comp3acl-vGmp6BQ3?
No, authentication is not required to exploit cisco-sa-comp3acl-vGmp6BQ3, allowing remote attackers to exploit the vulnerability directly.