Lucene search

K
ciscoCiscoCISCO-SA-20170320-ANI
HistoryMar 20, 2017 - 4:00 p.m.

Cisco IOS and IOS XE Software Autonomic Networking Infrastructure Registrar Denial of Service Vulnerability

2017-03-2016:00:00
tools.cisco.com
11

EPSS

0.001

Percentile

42.0%

A vulnerability in the Autonomic Networking Infrastructure (ANI) registrar feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition.

The vulnerability is due to incomplete input validation on certain crafted packets. An attacker could exploit this vulnerability by sending a crafted autonomic network channel discovery packet to a device that has all the following characteristics:

Running a Cisco IOS Software or Cisco IOS XE Software release that supports the ANI feature
Configured as an autonomic registrar
Has a whitelist configured
An exploit could allow the attacker to cause the affected device to reload.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170320-ani [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170320-ani”]

Note: Also see the companion advisory for affected devices that support Autonomic Networking: Cisco IOS and IOS XE Software IPv6 Denial of Service Vulnerability [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170320-aniipv6”].

Affected configurations

Vulners
Node
ciscoiosMatch15.3s
OR
ciscoiosMatch15.2e
OR
ciscoiosMatch15.4s
OR
ciscoiosMatch15.5s
OR
ciscoiosMatch15.2ea
OR
ciscoiosMatch15.4sn
OR
ciscoiosMatch15.5sn
OR
ciscoiosMatch15.6s
OR
ciscoiosMatch15.6t
OR
ciscoiosMatch15.6sp
OR
ciscoiosMatch15.6sn
OR
ciscoiosMatch15.6m
OR
ciscocisco_iosMatch3.10sxe
OR
ciscocisco_iosMatch3.12sxe
OR
ciscocisco_iosMatch3.13sxe
OR
ciscocisco_iosMatch3.14sxe
OR
ciscocisco_iosMatch3.15sxe
OR
ciscocisco_iosMatch3.7exe
OR
ciscocisco_iosMatch3.16sxe
OR
ciscocisco_iosMatch3.17sxe
OR
ciscocisco_iosMatch16.2xe
OR
ciscocisco_iosMatch3.8exe
OR
ciscocisco_iosMatch16.3xe
OR
ciscocisco_iosMatch16.4xe
OR
ciscocisco_iosMatch3.18sxe
OR
ciscocisco_iosMatch3.18spxe
OR
ciscocisco_iosMatch3.9exe
OR
ciscoiosMatch15.3\(3\)s2
OR
ciscoiosMatch15.3\(3\)s6
OR
ciscoiosMatch15.3\(3\)s5
OR
ciscoiosMatch15.3\(3\)s8
OR
ciscoiosMatch15.3\(3\)s9
OR
ciscoiosMatch15.3\(3\)s8a
OR
ciscoiosMatch15.2\(3\)e
OR
ciscoiosMatch15.2\(4\)e
OR
ciscoiosMatch15.2\(3\)e1
OR
ciscoiosMatch15.2\(3\)e2
OR
ciscoiosMatch15.2\(3\)e3
OR
ciscoiosMatch15.2\(4\)e1
OR
ciscoiosMatch15.2\(4\)e2
OR
ciscoiosMatch15.2\(3\)e4
OR
ciscoiosMatch15.2\(5\)e
OR
ciscoiosMatch15.2\(4\)e3
OR
ciscoiosMatch15.2\(5\)e1
OR
ciscoiosMatch15.2\(5b\)e
OR
ciscoiosMatch15.2\(3\)e5
OR
ciscoiosMatch15.2\(6\)e0b
OR
ciscoiosMatch15.2\(4s\)e2
OR
ciscoiosMatch15.4\(1\)s
OR
ciscoiosMatch15.4\(2\)s
OR
ciscoiosMatch15.4\(3\)s
OR
ciscoiosMatch15.4\(1\)s1
OR
ciscoiosMatch15.4\(1\)s2
OR
ciscoiosMatch15.4\(2\)s1
OR
ciscoiosMatch15.4\(1\)s3
OR
ciscoiosMatch15.4\(3\)s1
OR
ciscoiosMatch15.4\(2\)s2
OR
ciscoiosMatch15.4\(3\)s2
OR
ciscoiosMatch15.4\(3\)s3
OR
ciscoiosMatch15.4\(1\)s4
OR
ciscoiosMatch15.4\(2\)s3
OR
ciscoiosMatch15.4\(2\)s4
OR
ciscoiosMatch15.4\(3\)s4
OR
ciscoiosMatch15.4\(3\)s5
OR
ciscoiosMatch15.4\(3\)s6
OR
ciscoiosMatch15.4\(3\)s6a
OR
ciscoiosMatch15.5\(1\)s
OR
ciscoiosMatch15.5\(2\)s
OR
ciscoiosMatch15.5\(1\)s1
OR
ciscoiosMatch15.5\(3\)s
OR
ciscoiosMatch15.5\(1\)s2
OR
ciscoiosMatch15.5\(1\)s3
OR
ciscoiosMatch15.5\(2\)s1
OR
ciscoiosMatch15.5\(2\)s2
OR
ciscoiosMatch15.5\(3\)s1a
OR
ciscoiosMatch15.5\(2\)s3
OR
ciscoiosMatch15.5\(3\)s2
OR
ciscoiosMatch15.5\(3\)s3
OR
ciscoiosMatch15.5\(1\)s4
OR
ciscoiosMatch15.5\(2\)s4
OR
ciscoiosMatch15.5\(3\)s4
OR
ciscoiosMatch15.5\(3\)s5
OR
ciscoiosMatch15.2\(3\)ea
OR
ciscoiosMatch15.2\(4\)ea
OR
ciscoiosMatch15.2\(4\)ea1
OR
ciscoiosMatch15.2\(5\)ea
OR
ciscoiosMatch15.2\(4\)ea5
OR
ciscoiosMatch15.4\(2\)sn
OR
ciscoiosMatch15.4\(2\)sn1
OR
ciscoiosMatch15.4\(3\)sn1
OR
ciscoiosMatch15.4\(3\)sn1a
OR
ciscoiosMatch15.5\(1\)sn
OR
ciscoiosMatch15.5\(1\)sn1
OR
ciscoiosMatch15.5\(2\)sn
OR
ciscoiosMatch15.5\(3\)sn0a
OR
ciscoiosMatch15.5\(3\)sn
OR
ciscoiosMatch15.6\(1\)s
OR
ciscoiosMatch15.6\(2\)s
OR
ciscoiosMatch15.6\(2\)s1
OR
ciscoiosMatch15.6\(1\)s1
OR
ciscoiosMatch15.6\(1\)s2
OR
ciscoiosMatch15.6\(2\)s0a
OR
ciscoiosMatch15.6\(2\)s2
OR
ciscoiosMatch15.6\(1\)s3
OR
ciscoiosMatch15.6\(1\)t
OR
ciscoiosMatch15.6\(2\)t
OR
ciscoiosMatch15.6\(1\)t0a
OR
ciscoiosMatch15.6\(1\)t1
OR
ciscoiosMatch15.6\(2\)t1
OR
ciscoiosMatch15.6\(1\)t2
OR
ciscoiosMatch15.6\(2\)t2
OR
ciscoiosMatch15.6\(1\)t3
OR
ciscoiosMatch15.6\(2\)sp
OR
ciscoiosMatch15.6\(2\)sp1
OR
ciscoiosMatch15.6\(1\)sn
OR
ciscoiosMatch15.6\(1\)sn1
OR
ciscoiosMatch15.6\(2\)sn
OR
ciscoiosMatch15.6\(1\)sn2
OR
ciscoiosMatch15.6\(1\)sn3
OR
ciscoiosMatch15.6\(3\)sn
OR
ciscoiosMatch15.6\(4\)sn
OR
ciscoiosMatch15.6\(5\)sn
OR
ciscoiosMatch15.6\(6\)sn
OR
ciscoiosMatch15.6\(7\)sn
OR
ciscoiosMatch15.6\(7\)sn1
OR
ciscoiosMatch15.6\(7\)sn2
OR
ciscoiosMatch15.6\(7\)sn3
OR
ciscoiosMatch15.6\(3\)m
OR
ciscoiosMatch15.6\(3\)m1
OR
ciscoiosMatch15.6\(3\)m0a
OR
ciscoiosMatch15.6\(3\)m1a
OR
ciscocisco_iosMatch3.10.4sxe
OR
ciscocisco_iosMatch3.10.1xcsxe
OR
ciscocisco_iosMatch3.12.0sxe
OR
ciscocisco_iosMatch3.12.1sxe
OR
ciscocisco_iosMatch3.12.2sxe
OR
ciscocisco_iosMatch3.12.3sxe
OR
ciscocisco_iosMatch3.12.0asxe
OR
ciscocisco_iosMatch3.12.4sxe
OR
ciscocisco_iosMatch3.13.0sxe
OR
ciscocisco_iosMatch3.13.1sxe
OR
ciscocisco_iosMatch3.13.2sxe
OR
ciscocisco_iosMatch3.13.3sxe
OR
ciscocisco_iosMatch3.13.4sxe
OR
ciscocisco_iosMatch3.13.5sxe
OR
ciscocisco_iosMatch3.13.2asxe
OR
ciscocisco_iosMatch3.13.6sxe
OR
ciscocisco_iosMatch3.13.6asxe
OR
ciscocisco_iosMatch3.14.0sxe
OR
ciscocisco_iosMatch3.14.1sxe
OR
ciscocisco_iosMatch3.14.2sxe
OR
ciscocisco_iosMatch3.14.3sxe
OR
ciscocisco_iosMatch3.14.4sxe
OR
ciscocisco_iosMatch3.15.0sxe
OR
ciscocisco_iosMatch3.15.1sxe
OR
ciscocisco_iosMatch3.15.2sxe
OR
ciscocisco_iosMatch3.15.3sxe
OR
ciscocisco_iosMatch3.15.4sxe
OR
ciscocisco_iosMatch3.7.0exe
OR
ciscocisco_iosMatch3.7.1exe
OR
ciscocisco_iosMatch3.7.2exe
OR
ciscocisco_iosMatch3.7.3exe
OR
ciscocisco_iosMatch3.7.4exe
OR
ciscocisco_iosMatch3.7.5exe
OR
ciscocisco_iosMatch3.16.0sxe
OR
ciscocisco_iosMatch3.16.1sxe
OR
ciscocisco_iosMatch3.16.0asxe
OR
ciscocisco_iosMatch3.16.1asxe
OR
ciscocisco_iosMatch3.16.2sxe
OR
ciscocisco_iosMatch3.16.2asxe
OR
ciscocisco_iosMatch3.16.0bsxe
OR
ciscocisco_iosMatch3.16.3sxe
OR
ciscocisco_iosMatch3.16.3asxe
OR
ciscocisco_iosMatch3.16.4sxe
OR
ciscocisco_iosMatch3.16.4asxe
OR
ciscocisco_iosMatch3.16.4bsxe
OR
ciscocisco_iosMatch3.16.5sxe
OR
ciscocisco_iosMatch3.16.4csxe
OR
ciscocisco_iosMatch3.16.5asxe
OR
ciscocisco_iosMatch3.16.5bsxe
OR
ciscocisco_iosMatch3.17.0sxe
OR
ciscocisco_iosMatch3.17.1sxe
OR
ciscocisco_iosMatch3.17.2sxe
OR
ciscocisco_iosMatch3.17.3sxe
OR
ciscocisco_iosMatch16.2.1xe
OR
ciscocisco_iosMatch16.2.2xe
OR
ciscocisco_iosMatch3.8.0exe
OR
ciscocisco_iosMatch3.8.1exe
OR
ciscocisco_iosMatch3.8.2exe
OR
ciscocisco_iosMatch3.8.3exe
OR
ciscocisco_iosMatch16.3.1xe
OR
ciscocisco_iosMatch16.3.2xe
OR
ciscocisco_iosMatch16.3.1axe
OR
ciscocisco_iosMatch16.4.1xe
OR
ciscocisco_iosMatch3.18.0sxe
OR
ciscocisco_iosMatch3.18.1sxe
OR
ciscocisco_iosMatch3.18.2sxe
OR
ciscocisco_iosMatch3.18.0spxe
OR
ciscocisco_iosMatch3.18.1spxe
OR
ciscocisco_iosMatch3.18.1gspxe
OR
ciscocisco_iosMatch3.18.1bspxe
OR
ciscocisco_iosMatch3.18.1cspxe
OR
ciscocisco_iosMatch3.18.1hspxe
OR
ciscocisco_iosMatch3.18.1ispxe
OR
ciscocisco_iosMatch3.9.0exe
OR
ciscocisco_iosMatch3.9.1exe
VendorProductVersionCPE
ciscoios15.3scpe:2.3:o:cisco:ios:15.3s:*:*:*:*:*:*:*
ciscoios15.2ecpe:2.3:o:cisco:ios:15.2e:*:*:*:*:*:*:*
ciscoios15.4scpe:2.3:o:cisco:ios:15.4s:*:*:*:*:*:*:*
ciscoios15.5scpe:2.3:o:cisco:ios:15.5s:*:*:*:*:*:*:*
ciscoios15.2eacpe:2.3:o:cisco:ios:15.2ea:*:*:*:*:*:*:*
ciscoios15.4sncpe:2.3:o:cisco:ios:15.4sn:*:*:*:*:*:*:*
ciscoios15.5sncpe:2.3:o:cisco:ios:15.5sn:*:*:*:*:*:*:*
ciscoios15.6scpe:2.3:o:cisco:ios:15.6s:*:*:*:*:*:*:*
ciscoios15.6tcpe:2.3:o:cisco:ios:15.6t:*:*:*:*:*:*:*
ciscoios15.6spcpe:2.3:o:cisco:ios:15.6sp:*:*:*:*:*:*:*
Rows per page:
1-10 of 2061

EPSS

0.001

Percentile

42.0%

Related for CISCO-SA-20170320-ANI