- Description
- A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device to be processed. A successful exploit could cause an affected device to continuously consume memory and eventually reload, resulting in a DoS condition. Cisco Bug IDs: CSCvf22394.
- Source
- psirt@cisco.com
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 8.6
- Impact score
- 4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Data from CISA
- Vulnerability name
- Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability
- Exploit added on
- Mar 3, 2022
- Exploit action due
- Mar 17, 2022
- Required action
- Apply updates per vendor instructions.
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3126916B-968A-4C85-A963-1AAA418DB52E"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1CFEC4B0-3EA4-40D3-A197-7942F4A9807C"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1BB36C60-F393-4FC1-ADE8-B83FAABBB17B"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E807206F-26A1-40FF-A3AC-F819660D4AB1"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E769D555-76B6-4EF0-8996-87B8775D40EC"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E878525D-7FF5-42C7-899B-8C56360246C9"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D2F0AD0E-313F-49FF-AD9A-0DFB643D38A0"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B2C28AD2-24CD-49DD-8883-4C4351E8A3F8"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "75421C15-4E2A-4F56-ABD8-4592E686B60E"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "00B75EED-9A20-4C5F-907E-E1C73476B700"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "7594E307-AC80-41EC-AE94-07E664A7D701"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "09C913FF-63D5-43FB-8B39-598EF436BA5A"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CD2794BD-C8CE-46EF-9857-1723FCF04E46"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "DE7401B7-094C-46EB-9869-2F0372E8B26B"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "8D8A72FD-D8B0-45B5-8FAD-6D8395BB218A"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "854D9594-FE84-4E7B-BA21-A3287F2DC302"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C4EF130D-747B-4A10-84E9-94796C819755"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ACE49E6B-9DE9-4AA3-8AA1-58958D98BD5A"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "97E48CD3-1C0B-4925-A852-3FFF5AFBF67C"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B951A529-F0EB-4042-A2B9-C7D37D4CCB94"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DFBDA3E6-17F0-45B9-8DC4-6A90B45272D7"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB99039D-BA07-45FC-85E8-691AF9D0B764"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "28258348-0537-41D9-801E-22F771BC9D87"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A533BCC3-5C12-41F3-B43E-11121D74F623"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB2EDC53-4BED-40CC-BC76-D714FB637F47"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "74A50D40-737E-4B9F-BDE0-19F111B5A98B"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "7594E307-AC80-41EC-AE94-07E664A7D701"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "09C913FF-63D5-43FB-8B39-598EF436BA5A"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CD2794BD-C8CE-46EF-9857-1723FCF04E46"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "DE7401B7-094C-46EB-9869-2F0372E8B26B"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "8D8A72FD-D8B0-45B5-8FAD-6D8395BB218A"
},
{
"criteria": "cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "854D9594-FE84-4E7B-BA21-A3287F2DC302"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3126916B-968A-4C85-A963-1AAA418DB52E"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1CFEC4B0-3EA4-40D3-A197-7942F4A9807C"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1BB36C60-F393-4FC1-ADE8-B83FAABBB17B"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E807206F-26A1-40FF-A3AC-F819660D4AB1"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E769D555-76B6-4EF0-8996-87B8775D40EC"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E878525D-7FF5-42C7-899B-8C56360246C9"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D2F0AD0E-313F-49FF-AD9A-0DFB643D38A0"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B2C28AD2-24CD-49DD-8883-4C4351E8A3F8"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "75421C15-4E2A-4F56-ABD8-4592E686B60E"
},
{
"criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "00B75EED-9A20-4C5F-907E-E1C73476B700"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C4EF130D-747B-4A10-84E9-94796C819755"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ACE49E6B-9DE9-4AA3-8AA1-58958D98BD5A"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "97E48CD3-1C0B-4925-A852-3FFF5AFBF67C"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "B951A529-F0EB-4042-A2B9-C7D37D4CCB94"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DFBDA3E6-17F0-45B9-8DC4-6A90B45272D7"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB99039D-BA07-45FC-85E8-691AF9D0B764"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "28258348-0537-41D9-801E-22F771BC9D87"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A533BCC3-5C12-41F3-B43E-11121D74F623"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.11:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB2EDC53-4BED-40CC-BC76-D714FB637F47"
},
{
"criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.12:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "74A50D40-737E-4B9F-BDE0-19F111B5A98B"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:rockwellautomation:allen-bradley_stratix_5900:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "1609D07F-FF2D-49D8-8672-9C512A69479D"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]