cisco-sa-sdwan-dos-Ckn5cVqW: Cisco SD-WAN Software vDaemon Denial of Service Vulnerability
A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-dos-Ckn5cVqW
Credit
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-sdwan-dos-Ckn5cVqW?
The severity of cisco-sa-sdwan-dos-Ckn5cVqW is classified as high due to its potential to cause a denial of service condition.
How do I fix cisco-sa-sdwan-dos-Ckn5cVqW?
To fix cisco-sa-sdwan-dos-Ckn5cVqW, upgrade to an unaffected version of Cisco SD-WAN software.
What type of vulnerability is cisco-sa-sdwan-dos-Ckn5cVqW?
cisco-sa-sdwan-dos-Ckn5cVqW is a denial of service (DoS) vulnerability.
What causes the cisco-sa-sdwan-dos-Ckn5cVqW vulnerability?
The cisco-sa-sdwan-dos-Ckn5cVqW vulnerability is caused by insufficient handling of malformed packets in the vDaemon process.
Who is affected by cisco-sa-sdwan-dos-Ckn5cVqW?
Organizations using Cisco SD-WAN software versions 20.5.1, 20.4.1, and earlier versions are affected by cisco-sa-sdwan-dos-Ckn5cVqW.