cisco-sa-20161207-asr1
Cisco ASR 5000 Series IKEv2 Denial of Service Vulnerability
Medium · Updated · Cisco
1 product with CSAF evidence
A vulnerability in the Internet Key Exchange Version 2 (IKEv2) feature of Cisco ASR 5000 Series Software could allow an unauthenticated, remote attacker to cause a reload of the ipsecmgr process. The vulnerability is due to a race condition in the IKEv2 negotiation logic. An attacker could exploit this vulnerability by sending crafted IKEv2 packets during a negotiation. An exploit could allow the attacker to cause a crash of the ipsecmgr process, which will restart on its own. Only the connection being negotiated will need to re-establish. There are no workarounds that address this vulnerability.
| Product | CVE |
|---|---|
| Cisco ASR 5000 Series Software | CVE-2016-9203 |