A vulnerability in the Multiprotocol Label Switching (MPLS) packet handling function of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to gain access to information stored in MPLS buffer memory. This vulnerability is due to insufficient handling of malformed MPLS packets that are processed by a device that is running Cisco SD-WAN Software. An attacker could exploit this vulnerability by sending a crafted MPLS packet to an affected device that is running Cisco SD-WAN Software or Cisco SD-WAN vManage Software. A successful exploit could allow the attacker to gain unauthorized access to sensitive information.
History

Thu, 07 Nov 2024 23:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2021-07-22T15:20:28.112649Z

Updated: 2024-11-07T22:05:36.937Z

Reserved: 2020-11-13T00:00:00

Link: CVE-2021-1614

cve-icon Vulnrichment

Updated: 2024-08-03T16:18:10.401Z

cve-icon NVD

Status : Modified

Published: 2021-07-22T16:15:08.667

Modified: 2023-11-07T03:28:47.243

Link: CVE-2021-1614

cve-icon Redhat

No data.