CVE-2024-20307
MEDIUMCisco IOS - Unauthenticated Denial of Service via IKEv1 Fragment Reassembly
Title source: llmDescription
A vulnerability in the IKEv1 fragmentation code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a heap overflow, resulting in an affected device reloading. This vulnerability exists because crafted, fragmented IKEv1 packets are not properly reassembled. An attacker could exploit this vulnerability by sending crafted UDP packets to an affected system. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition. Note: Only traffic that is directed to the affected system can be used to exploit this vulnerability. This vulnerability can be triggered by IPv4 and IPv6 traffic.
References (1)
Core 1
Core References
Scores
CVSS v3
6.8
EPSS
0.0149
EPSS Percentile
81.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-121
Status
published
Products (50)
cisco/ios
15.1\(2\)sg8
cisco/ios
15.1\(2\)sy8
cisco/ios
15.1\(2\)sy9
cisco/ios
15.1\(2\)sy10
cisco/ios
15.1\(2\)sy11
cisco/ios
15.1\(2\)sy12
cisco/ios
15.1\(2\)sy13
cisco/ios
15.1\(2\)sy14
cisco/ios
15.1\(2\)sy15
cisco/ios
15.1\(2\)sy16
... and 40 more
Published
Mar 27, 2024
Tracked Since
Feb 18, 2026