Overview
- Description
- A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a memory leak or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device to be processed. A successful exploit could cause an affected device to continuously consume memory and eventually reload, resulting in a DoS condition. Cisco Bug IDs: CSCvf22394.
- Source
- ykramarz@cisco.com
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 8.6
- Impact score
- 4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Known exploits
Data from CISA
- Vulnerability name
- Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability
- Exploit added on
- Mar 3, 2022
- Exploit action due
- Mar 17, 2022
- Required action
- Apply updates per vendor instructions.
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3126916B-968A-4C85-A963-1AAA418DB52E" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1CFEC4B0-3EA4-40D3-A197-7942F4A9807C" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1BB36C60-F393-4FC1-ADE8-B83FAABBB17B" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E807206F-26A1-40FF-A3AC-F819660D4AB1" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E769D555-76B6-4EF0-8996-87B8775D40EC" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E878525D-7FF5-42C7-899B-8C56360246C9" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2F0AD0E-313F-49FF-AD9A-0DFB643D38A0" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2C28AD2-24CD-49DD-8883-4C4351E8A3F8" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75421C15-4E2A-4F56-ABD8-4592E686B60E" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "00B75EED-9A20-4C5F-907E-E1C73476B700" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7594E307-AC80-41EC-AE94-07E664A7D701" }, { "criteria": "cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "09C913FF-63D5-43FB-8B39-598EF436BA5A" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CD2794BD-C8CE-46EF-9857-1723FCF04E46" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F" }, { "criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B" }, { "criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D" }, { "criteria": "cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DE7401B7-094C-46EB-9869-2F0372E8B26B" }, { "criteria": "cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8D8A72FD-D8B0-45B5-8FAD-6D8395BB218A" }, { "criteria": "cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "854D9594-FE84-4E7B-BA21-A3287F2DC302" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4EF130D-747B-4A10-84E9-94796C819755" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACE49E6B-9DE9-4AA3-8AA1-58958D98BD5A" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97E48CD3-1C0B-4925-A852-3FFF5AFBF67C" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B951A529-F0EB-4042-A2B9-C7D37D4CCB94" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFBDA3E6-17F0-45B9-8DC4-6A90B45272D7" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB99039D-BA07-45FC-85E8-691AF9D0B764" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28258348-0537-41D9-801E-22F771BC9D87" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A533BCC3-5C12-41F3-B43E-11121D74F623" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FB2EDC53-4BED-40CC-BC76-D714FB637F47" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74A50D40-737E-4B9F-BDE0-19F111B5A98B" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:cisco:asr_1001-hx:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7594E307-AC80-41EC-AE94-07E664A7D701" }, { "criteria": "cpe:2.3:h:cisco:asr_1001-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "09C913FF-63D5-43FB-8B39-598EF436BA5A" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-hx:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CD2794BD-C8CE-46EF-9857-1723FCF04E46" }, { "criteria": "cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "444F688F-79D0-4F22-B530-7BD520080B8F" }, { "criteria": "cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "55DD2272-10C2-43B9-9F13-6DC41DBE179B" }, { "criteria": "cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7428E0A8-1641-47FB-9CA9-34311DEF660D" }, { "criteria": "cpe:2.3:h:cisco:asr_1006-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DE7401B7-094C-46EB-9869-2F0372E8B26B" }, { "criteria": "cpe:2.3:h:cisco:asr_1009-x:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8D8A72FD-D8B0-45B5-8FAD-6D8395BB218A" }, { "criteria": "cpe:2.3:h:cisco:asr_1013:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "854D9594-FE84-4E7B-BA21-A3287F2DC302" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3126916B-968A-4C85-A963-1AAA418DB52E" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1CFEC4B0-3EA4-40D3-A197-7942F4A9807C" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1BB36C60-F393-4FC1-ADE8-B83FAABBB17B" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E807206F-26A1-40FF-A3AC-F819660D4AB1" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E769D555-76B6-4EF0-8996-87B8775D40EC" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E878525D-7FF5-42C7-899B-8C56360246C9" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2F0AD0E-313F-49FF-AD9A-0DFB643D38A0" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B2C28AD2-24CD-49DD-8883-4C4351E8A3F8" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75421C15-4E2A-4F56-ABD8-4592E686B60E" }, { "criteria": "cpe:2.3:o:cisco:ios:15.5\\(3\\)s1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "00B75EED-9A20-4C5F-907E-E1C73476B700" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4EF130D-747B-4A10-84E9-94796C819755" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACE49E6B-9DE9-4AA3-8AA1-58958D98BD5A" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97E48CD3-1C0B-4925-A852-3FFF5AFBF67C" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B951A529-F0EB-4042-A2B9-C7D37D4CCB94" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFBDA3E6-17F0-45B9-8DC4-6A90B45272D7" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB99039D-BA07-45FC-85E8-691AF9D0B764" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28258348-0537-41D9-801E-22F771BC9D87" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A533BCC3-5C12-41F3-B43E-11121D74F623" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FB2EDC53-4BED-40CC-BC76-D714FB637F47" }, { "criteria": "cpe:2.3:o:cisco:ios_xe:15.5\\(3\\)s1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74A50D40-737E-4B9F-BDE0-19F111B5A98B" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:rockwellautomation:allen-bradley_stratix_5900:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "1609D07F-FF2D-49D8-8672-9C512A69479D" } ], "operator": "OR" } ], "operator": "AND" } ]