cisco-sa-ikev1-NO2ccFWz: Cisco IOS and IOS XE Software Internet Key Exchange Version 1 Fragmentation Denial of Service Vulnerabilities
Multiple vulnerabilities in the Internet Key Exchange version 1 (IKEv1) fragmentation feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap overflow or corruption on an affected system.For more information about these
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-ikev1-NO2ccFWz?
The severity of cisco-sa-ikev1-NO2ccFWz is critical due to the potential for unauthenticated remote attackers to exploit it.
How do I fix cisco-sa-ikev1-NO2ccFWz?
To fix cisco-sa-ikev1-NO2ccFWz, you should update your Cisco IOS Software or Cisco IOS XE Software to the latest patched versions.
What systems are affected by cisco-sa-ikev1-NO2ccFWz?
cisco-sa-ikev1-NO2ccFWz affects both Cisco IOS Software and Cisco IOS XE Software implementations.
What kind of attack can be executed using cisco-sa-ikev1-NO2ccFWz?
An attacker can execute a heap overflow or corruption attack using cisco-sa-ikev1-NO2ccFWz.
Is authentication required to exploit cisco-sa-ikev1-NO2ccFWz?
No, exploitation of cisco-sa-ikev1-NO2ccFWz does not require authentication.