PT-2025-20254 · Cisco · Cisco Ios Xe
Published
2025-05-07
·
Updated
2025-07-11
·
CVE-2025-20162
CVSS v3.1
8.6
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco IOS XE Software (affected versions not specified)
Description
A vulnerability in the DHCP snooping security feature could allow an unauthenticated, remote attacker to cause a full interface queue wedge, resulting in a denial of service (DoS) condition. This issue is due to improper handling of DHCP request packets. An attacker could exploit this by sending DHCP request packets to an affected device, potentially causing packets to wedge in the queue and creating a DoS condition for downstream devices, which would require a system restart to resolve.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Ios Xe