// For flags

CVE-2017-6627

Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

Yes
*KEV

Decision

-
*SSVC
Descriptions

A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and a denial of service (DoS) condition. The vulnerability is due to Cisco IOS Software application changes that create UDP sockets and leave the sockets idle without closing them. An attacker could exploit this vulnerability by sending UDP packets with a destination port of 0 to an affected device. A successful exploit could allow the attacker to cause UDP packets to be held in the input interfaces queue, resulting in a DoS condition. The input interface queue will stop holding UDP packets when it receives 250 packets. Cisco Bug IDs: CSCup10024, CSCva55744, CSCva95506.

Una vulnerabilidad en el código de procesamiento UDP de Cisco IOS 15.1, 15.2 y 15.4, e OS XE 3.14 hasta la versión 3.18 podría permitir que un atacante remoto sin autenticar provoque que la cola de entrada de un sistema afectado retenga paquetes UDP. Esto provoca una cola de paquetes en la interfaz y una denegación de servicio. Esta vulnerabilidad se debe a cambios en la aplicación Cisco IOS Software que crean sockets UDP y dejan los sockets inactivos sin cerrarlos. Un atacante podría explotar esta vulnerabilidad enviando paquetes UDP con un puerto de destino 0 a un dispositivo afectado. Si se explota esta vulnerabilidad con éxito, un atacante podría provocar que los paquetes UDP fuesen retenidos en la cola de interfaces de entrada, lo que daría como resultado una condición DoS. La cola de interfaz de entrada dejará de retener paquetes UDP una vez que reciba 250 paquetes. Cisco Bug IDs: CSCup10024, CSCva55744, CSCva95506.

A vulnerability in the UDP processing code of Cisco IOS and IOS XE could allow an unauthenticated, remote attacker to cause the input queue of an affected system to hold UDP packets, causing an interface queue wedge and denial of service.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2017-03-09 CVE Reserved
  • 2017-09-07 CVE Published
  • 2022-03-03 Exploited in Wild
  • 2022-03-24 KEV Due Date
  • 2024-05-20 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- First Exploit
CWE
  • CWE-399: Resource Management Errors
  • CWE-404: Improper Resource Shutdown or Release
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(2\)gc
Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(2\)gc1
Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(2\)gc2
Search vendor "Cisco" for product "Ios" and version "15.1\(2\)gc2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(4\)gc
Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(4\)gc1
Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.1\(4\)gc2
Search vendor "Cisco" for product "Ios" and version "15.1\(4\)gc2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(1\)gc
Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(1\)gc1
Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(1\)gc2
Search vendor "Cisco" for product "Ios" and version "15.2\(1\)gc2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(2\)gc
Search vendor "Cisco" for product "Ios" and version "15.2\(2\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(3\)gc
Search vendor "Cisco" for product "Ios" and version "15.2\(3\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(3\)gc1
Search vendor "Cisco" for product "Ios" and version "15.2\(3\)gc1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(3r\)gca
Search vendor "Cisco" for product "Ios" and version "15.2\(3r\)gca"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(4\)gc
Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(4\)gc1
Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(4\)gc2
Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.2\(4\)gc3
Search vendor "Cisco" for product "Ios" and version "15.2\(4\)gc3"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(1\)t
Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(1\)t1
Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(1\)t2
Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(1\)t3
Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t3"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(1\)t4
Search vendor "Cisco" for product "Ios" and version "15.4\(1\)t4"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(2\)t
Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(2\)t1
Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(2\)t2
Search vendor "Cisco" for product "Ios" and version "15.4\(2\)t2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m1
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m1"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m2
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m2.2
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m2.2"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m3
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m3"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m4
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m4"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m5
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m5"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m6
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m6"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m6a
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m6a"
-
Affected
Cisco
Search vendor "Cisco"
Ios
Search vendor "Cisco" for product "Ios"
15.4\(3\)m7
Search vendor "Cisco" for product "Ios" and version "15.4\(3\)m7"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.14.0s
Search vendor "Cisco" for product "Ios Xe" and version "3.14.0s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.14.1s
Search vendor "Cisco" for product "Ios Xe" and version "3.14.1s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.14.2s
Search vendor "Cisco" for product "Ios Xe" and version "3.14.2s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.14.3s
Search vendor "Cisco" for product "Ios Xe" and version "3.14.3s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.14.4s
Search vendor "Cisco" for product "Ios Xe" and version "3.14.4s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.0s
Search vendor "Cisco" for product "Ios Xe" and version "3.15.0s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.1cs
Search vendor "Cisco" for product "Ios Xe" and version "3.15.1cs"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.1s
Search vendor "Cisco" for product "Ios Xe" and version "3.15.1s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.2s
Search vendor "Cisco" for product "Ios Xe" and version "3.15.2s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.3s
Search vendor "Cisco" for product "Ios Xe" and version "3.15.3s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.15.4s
Search vendor "Cisco" for product "Ios Xe" and version "3.15.4s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.0cs
Search vendor "Cisco" for product "Ios Xe" and version "3.16.0cs"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.0s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.0s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.1as
Search vendor "Cisco" for product "Ios Xe" and version "3.16.1as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.1s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.1s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.2as
Search vendor "Cisco" for product "Ios Xe" and version "3.16.2as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.2bs
Search vendor "Cisco" for product "Ios Xe" and version "3.16.2bs"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.2s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.2s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.3as
Search vendor "Cisco" for product "Ios Xe" and version "3.16.3as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.3s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.3s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.4as
Search vendor "Cisco" for product "Ios Xe" and version "3.16.4as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.4bs
Search vendor "Cisco" for product "Ios Xe" and version "3.16.4bs"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.4ds
Search vendor "Cisco" for product "Ios Xe" and version "3.16.4ds"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.4s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.4s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.5s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.5s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.16.6s
Search vendor "Cisco" for product "Ios Xe" and version "3.16.6s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.17.0s
Search vendor "Cisco" for product "Ios Xe" and version "3.17.0s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.17.1as
Search vendor "Cisco" for product "Ios Xe" and version "3.17.1as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.17.1s
Search vendor "Cisco" for product "Ios Xe" and version "3.17.1s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.17.3s
Search vendor "Cisco" for product "Ios Xe" and version "3.17.3s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.0as
Search vendor "Cisco" for product "Ios Xe" and version "3.18.0as"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.0s
Search vendor "Cisco" for product "Ios Xe" and version "3.18.0s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.1s
Search vendor "Cisco" for product "Ios Xe" and version "3.18.1s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.2s
Search vendor "Cisco" for product "Ios Xe" and version "3.18.2s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.3s
Search vendor "Cisco" for product "Ios Xe" and version "3.18.3s"
-
Affected
Cisco
Search vendor "Cisco"
Ios Xe
Search vendor "Cisco" for product "Ios Xe"
3.18.3vs
Search vendor "Cisco" for product "Ios Xe" and version "3.18.3vs"
-
Affected