CVE-2017-6627
Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
YesDecision
Descriptions
A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and a denial of service (DoS) condition. The vulnerability is due to Cisco IOS Software application changes that create UDP sockets and leave the sockets idle without closing them. An attacker could exploit this vulnerability by sending UDP packets with a destination port of 0 to an affected device. A successful exploit could allow the attacker to cause UDP packets to be held in the input interfaces queue, resulting in a DoS condition. The input interface queue will stop holding UDP packets when it receives 250 packets. Cisco Bug IDs: CSCup10024, CSCva55744, CSCva95506.
Una vulnerabilidad en el código de procesamiento UDP de Cisco IOS 15.1, 15.2 y 15.4, e OS XE 3.14 hasta la versión 3.18 podría permitir que un atacante remoto sin autenticar provoque que la cola de entrada de un sistema afectado retenga paquetes UDP. Esto provoca una cola de paquetes en la interfaz y una denegación de servicio. Esta vulnerabilidad se debe a cambios en la aplicación Cisco IOS Software que crean sockets UDP y dejan los sockets inactivos sin cerrarlos. Un atacante podría explotar esta vulnerabilidad enviando paquetes UDP con un puerto de destino 0 a un dispositivo afectado. Si se explota esta vulnerabilidad con éxito, un atacante podría provocar que los paquetes UDP fuesen retenidos en la cola de interfaces de entrada, lo que daría como resultado una condición DoS. La cola de interfaz de entrada dejará de retener paquetes UDP una vez que reciba 250 paquetes. Cisco Bug IDs: CSCup10024, CSCva55744, CSCva95506.
A vulnerability in the UDP processing code of Cisco IOS and IOS XE could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and denial of service.
CVSS Scores
SSVC
- Decision:Act
Timeline
- 2017-03-09 CVE Reserved
- 2017-09-07 CVE Published
- 2022-03-03 Exploited in Wild
- 2022-03-24 KEV Due Date
- 2024-12-17 EPSS Updated
- 2025-02-04 CVE Updated
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
- CWE-404: Improper Resource Shutdown or Release
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/100644 | Third Party Advisory | |
http://www.securitytracker.com/id/1039289 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170906-ios-udp | 2024-03-04 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(2\)gc Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(2\)gc1 Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(2\)gc2 Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(4\)gc Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(4\)gc1 Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1\(4\)gc2 Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(1\)gc Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(1\)gc1 Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(1\)gc2 Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(2\)gc Search vendor "Cisco" for product "Ios" and version "15.2\(2\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(3\)gc Search vendor "Cisco" for product "Ios" and version "15.2\(3\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(3\)gc1 Search vendor "Cisco" for product "Ios" and version "15.2\(3\)gc1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(3r\)gca Search vendor "Cisco" for product "Ios" and version "15.2\(3r\)gca" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(4\)gc Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(4\)gc1 Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(4\)gc2 Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.2\(4\)gc3 Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(1\)t Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(1\)t1 Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(1\)t2 Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(1\)t3 Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(1\)t4 Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(2\)t Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(2\)t1 Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(2\)t2 Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m1 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m2 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m2.2 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m2.2" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m3 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m3" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m4 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m4" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m5 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m6 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m6" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m6a Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m6a" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.4\(3\)m7 Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m7" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.14.0s Search vendor "Cisco" for product "Ios Xe" and version "3.14.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.14.1s Search vendor "Cisco" for product "Ios Xe" and version "3.14.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.14.2s Search vendor "Cisco" for product "Ios Xe" and version "3.14.2s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.14.3s Search vendor "Cisco" for product "Ios Xe" and version "3.14.3s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.14.4s Search vendor "Cisco" for product "Ios Xe" and version "3.14.4s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.0s Search vendor "Cisco" for product "Ios Xe" and version "3.15.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.1cs Search vendor "Cisco" for product "Ios Xe" and version "3.15.1cs" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.1s Search vendor "Cisco" for product "Ios Xe" and version "3.15.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.2s Search vendor "Cisco" for product "Ios Xe" and version "3.15.2s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.3s Search vendor "Cisco" for product "Ios Xe" and version "3.15.3s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.15.4s Search vendor "Cisco" for product "Ios Xe" and version "3.15.4s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.0cs Search vendor "Cisco" for product "Ios Xe" and version "3.16.0cs" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.0s Search vendor "Cisco" for product "Ios Xe" and version "3.16.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.1as Search vendor "Cisco" for product "Ios Xe" and version "3.16.1as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.1s Search vendor "Cisco" for product "Ios Xe" and version "3.16.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.2as Search vendor "Cisco" for product "Ios Xe" and version "3.16.2as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.2bs Search vendor "Cisco" for product "Ios Xe" and version "3.16.2bs" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.2s Search vendor "Cisco" for product "Ios Xe" and version "3.16.2s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.3as Search vendor "Cisco" for product "Ios Xe" and version "3.16.3as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.3s Search vendor "Cisco" for product "Ios Xe" and version "3.16.3s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.4as Search vendor "Cisco" for product "Ios Xe" and version "3.16.4as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.4bs Search vendor "Cisco" for product "Ios Xe" and version "3.16.4bs" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.4ds Search vendor "Cisco" for product "Ios Xe" and version "3.16.4ds" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.4s Search vendor "Cisco" for product "Ios Xe" and version "3.16.4s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.5s Search vendor "Cisco" for product "Ios Xe" and version "3.16.5s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.16.6s Search vendor "Cisco" for product "Ios Xe" and version "3.16.6s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.17.0s Search vendor "Cisco" for product "Ios Xe" and version "3.17.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.17.1as Search vendor "Cisco" for product "Ios Xe" and version "3.17.1as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.17.1s Search vendor "Cisco" for product "Ios Xe" and version "3.17.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.17.3s Search vendor "Cisco" for product "Ios Xe" and version "3.17.3s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.0as Search vendor "Cisco" for product "Ios Xe" and version "3.18.0as" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.0s Search vendor "Cisco" for product "Ios Xe" and version "3.18.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.1s Search vendor "Cisco" for product "Ios Xe" and version "3.18.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.2s Search vendor "Cisco" for product "Ios Xe" and version "3.18.2s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.3s Search vendor "Cisco" for product "Ios Xe" and version "3.18.3s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.18.3vs Search vendor "Cisco" for product "Ios Xe" and version "3.18.3vs" | - |
Affected
|