cve-2020-3569

HIGH CVSS 8.6 cisa_known_exploited
Description

Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Internet Group Management Protocol (IGMP) packets. Exploitation could allow an unauthenticated, remote attacker to immediately crash the IGMP process or make it consume available memory and eventually crash.

Timeline
Published
2021-11-03
Last Modified
2021-11-03
CVSS Details

CVSS details not available.

Affected Products

No product information available.

References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cvss": 8.6,
  "datePublished": "2021-11-03",
  "dateUpdated": "2021-11-03",
  "description": "Cisco IOS XR Distance Vector Multicast Routing Protocol (DVMRP) incorrectly handles Internet Group Management Protocol (IGMP) packets. Exploitation could allow an unauthenticated, remote attacker to immediately crash the IGMP process or make it consume available memory and eventually crash.",
  "dueDate": "2022-05-03",
  "id": "CVE-2020-3569",
  "kev_catalogs": [
    "cisa"
  ],
  "knownRansomwareCampaignUse": "Unknown",
  "notes": "https://nvd.nist.gov/vuln/detail/CVE-2020-3569",
  "product": "IOS XR",
  "requiredAction": "Apply updates per vendor instructions.",
  "severity": "HIGH",
  "source": "cisa_known_exploited",
  "title": "Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability",
  "vendor": "Cisco"
}
Enrichment data
View JSON API Download JSON