Description
Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCuo17183, CSCvd73487.
Published: 2018-03-28
Score: 8.8 High
EPSS: 1.2% Low
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2018-0990 Multiple Buffer Overflow vulnerabilities in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code with elevated privileges on an affected device. Cisco Bug IDs: CSCuo17183, CSCvd73487.
History

Wed, 22 Oct 2025 00:15:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Wed, 13 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2022-03-03'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Cisco Asr 9001 Asr 9006 Asr 9010 Asr 9904 Asr 9906 Asr 9910 Asr 9912 Asr 9922 Ios Ios Xe Ios Xr
Rockwellautomation Allen-bradley Armorstratix 5700 Allen-bradley Stratix 5400 Allen-bradley Stratix 5410 Allen-bradley Stratix 5700 Allen-bradley Stratix 5900 Allen-bradley Stratix 8000 Allen-bradley Stratix 8300
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-01-12T21:58:25.472Z

Reserved: 2017-11-27T00:00:00.000Z

Link: CVE-2018-0167

cve-icon Vulnrichment

Updated: 2024-08-05T03:14:16.810Z

cve-icon NVD

Status : Analyzed

Published: 2018-03-28T22:29:00.907

Modified: 2026-01-14T18:45:33.313

Link: CVE-2018-0167

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses