A vulnerability in the Protection Against Distributed Denial of Service Attacks feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduct denial of service (DoS) attacks to or through the affected device. This vulnerability is due to incorrect programming of the half-opened connections limit, TCP SYN flood limit, or TCP SYN cookie features when the features are configured in vulnerable releases of Cisco IOS XE Software. An attacker could exploit this vulnerability by attempting to flood traffic to or through the affected device. A successful exploit could allow the attacker to initiate a DoS attack to or through an affected device.
History

Thu, 07 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2021-09-23T02:25:35.847628Z

Updated: 2024-11-07T21:59:26.622Z

Reserved: 2021-06-15T00:00:00

Link: CVE-2021-34697

cve-icon Vulnrichment

Updated: 2024-08-04T00:19:47.953Z

cve-icon NVD

Status : Modified

Published: 2021-09-23T03:15:16.107

Modified: 2024-11-21T06:10:58.283

Link: CVE-2021-34697

cve-icon Redhat

No data.