First published: Wed Sep 13 2023(Updated: )
A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system.This vulnerability is due to a time-of-check, time-of-use (TOCTOU) race condition when an install query
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XRv 9000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The cisco-sa-lnt-L9zOkBz5 vulnerability is considered high severity due to its potential for arbitrary code execution.
To remediate cisco-sa-lnt-L9zOkBz5, ensure that your Cisco IOS XR Software is updated to the latest patched version.
The cisco-sa-lnt-L9zOkBz5 vulnerability affects devices running affected Cisco IOS XR Software versions.
cisco-sa-lnt-L9zOkBz5 relates to local authenticated attackers exploiting a TOCTOU race condition.
User interaction is not required for cisco-sa-lnt-L9zOkBz5 to be exploited, as it targets authenticated local access.