PT-2017-16148 · Cisco · Cisco Asr 5000 Series Routers
Published
2017-07-04
·
Updated
2019-10-03
·
CVE-2017-3865
CVSS v3.1
5.8
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Cisco ASR 5000 Series Routers versions 21.1.0 through 21.1.M0.65601
Description
A vulnerability in the IPsec component could allow an unauthenticated, remote attacker to terminate all active IPsec VPN tunnels and prevent new tunnels from establishing, resulting in a denial of service (DoS) condition.
Recommendations
For versions 21.1.0 through 21.1.M0.65601, update to a fixed release such as 21.2.A0.65754, 21.1.b0.66164, 21.1.V0.66014, 21.1.R0.65759, 21.1.M0.65749, or 21.1.0.66030 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cisco Asr 5000 Series Routers