CVE-2022-20694

MEDIUM

Cisco IOS XE - Denial of Service via RPKI RTR Protocol Packet Header

Title source: llm
STIX 2.1

Description

A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of a specific RPKI to Router (RTR) Protocol packet header. An attacker could exploit this vulnerability by compromising the RPKI validator server and sending a specifically crafted RTR packet to an affected device. Alternatively, the attacker could use man-in-the-middle techniques to impersonate the RPKI validator server and send a crafted RTR response packet over the established RTR TCP connection to the affected device. A successful exploit could allow the attacker to cause a DoS condition because the BGP process could constantly restart and BGP routing could become unstable.

References (1)

Core 1
Core References

Scores

CVSS v3 6.8
EPSS 0.0036
EPSS Percentile 58.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-617
Status published
Products (50)
cisco/ios_xe 3.7.0bs
cisco/ios_xe 3.7.0s
cisco/ios_xe 3.7.0xas
cisco/ios_xe 3.7.0xbs
cisco/ios_xe 3.7.1as
cisco/ios_xe 3.7.1s
cisco/ios_xe 3.7.2s
cisco/ios_xe 3.7.2ts
cisco/ios_xe 3.7.3s
cisco/ios_xe 3.7.4as
... and 40 more
Published Apr 15, 2022
Tracked Since Feb 18, 2026