cisco-sa-sdw-vedos-KqFfhps3: Cisco SD-WAN vEdge Software UDP Packet Validation Denial of Service Vulnerability

Published Sep 25, 2024
·
Updated

A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system.This vulnerability is due to incorrect handling of a specific type of malformed UDP

Affected Software

1 affected component
Cisco SD-WAN vEdge Software

Event History

Sep 25, 2024
Advisory Published
via Cisco·04:00 PM
Data Sourced
via Cisco·04:00 PM
DescriptionSeverityWeakness

Child vulnerabilities

Contains the following vulnerabilities.

Frequently Asked Questions

1

What is the severity of cisco-sa-sdw-vedos-KqFfhps3?

The cisco-sa-sdw-vedos-KqFfhps3 vulnerability is classified as a high severity denial of service (DoS) issue.

2

How do I fix cisco-sa-sdw-vedos-KqFfhps3?

To mitigate the cisco-sa-sdw-vedos-KqFfhps3 vulnerability, users should upgrade to a fixed version of Cisco SD-WAN vEdge Software as recommended by Cisco.

3

What causes the cisco-sa-sdw-vedos-KqFfhps3 vulnerability?

The cisco-sa-sdw-vedos-KqFfhps3 vulnerability is caused by incorrect handling of malformed UDP packets in the UDP packet validation code.

4

Can cisco-sa-sdw-vedos-KqFfhps3 be exploited remotely?

No, the cisco-sa-sdw-vedos-KqFfhps3 vulnerability requires an unauthenticated, adjacent attacker to exploit it.

5

Which products are affected by cisco-sa-sdw-vedos-KqFfhps3?

The vulnerable product is Cisco SD-WAN vEdge Software, along with its associated vBond and vSmart Software Releases.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203