cve-2020-3569
HIGH CVSS 8.6 cisa_known_exploited
Description
Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Internet Group Management Protocol (IGMP) packets. Exploitation could allow an unauthenticated, remote attacker to immediately crash the IGMP process or make it consume available memory and eventually crash.
Timeline
- Published
- 2021-11-03
- Last Modified
- 2021-11-03
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"cvss": 8.6,
"datePublished": "2021-11-03",
"dateUpdated": "2021-11-03",
"description": "Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Internet Group Management Protocol (IGMP) packets. Exploitation could allow an unauthenticated, remote attacker to immediately crash the IGMP process or make it consume available memory and eventually crash.",
"dueDate": "2022-05-03",
"id": "CVE-2020-3569",
"kev_catalogs": [
"cisa"
],
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-3569",
"product": "IOS XR",
"requiredAction": "Apply updates per vendor instructions.",
"severity": "HIGH",
"source": "cisa_known_exploited",
"title": "Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability",
"vendor": "Cisco"
}
Enrichment data
Aggregated bundle (all enrichments)