Description
A vulnerability in the Layer 2 Tunneling Protocol (L2TP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

This vulnerability is due to improper handling of certain L2TP packets. An attacker could exploit this vulnerability by sending crafted L2TP packets to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition.

Note: Only traffic directed to the affected system can be used to exploit this vulnerability.
Published: 2023-09-27
Score: 8.6 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-24406 A vulnerability in the Layer 2 Tunneling Protocol (L2TP) feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain L2TP packets. An attacker could exploit this vulnerability by sending crafted L2TP packets to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition. Note: Only traffic directed to the affected system can be used to exploit this vulnerability.
History

No history.

Subscriptions

Cisco 1000 Integrated Services Router 1100-4g Integrated Services Router 1100-4gltegb Integrated Services Router 1100-4gltena Integrated Services Router 1100-6g Integrated Services Router 4221 Integrated Services Router 4321\/k9-rf Integrated Services Router 4321\/k9-ws Integrated Services Router 4321\/k9 Integrated Services Router 4321 Integrated Services Router 4331\/k9-rf Integrated Services Router 4331\/k9-ws Integrated Services Router 4331\/k9 Integrated Services Router 4331 Integrated Services Router 4351\/k9-rf Integrated Services Router 4351\/k9-ws Integrated Services Router 4351\/k9 Integrated Services Router 4351 Integrated Services Router 4431 Integrated Services Router 4451 Integrated Services Router 4461 Integrated Services Router C8200-1n-4t C8200l-1n-4t C8500l-8s4x Catalyst 8000v Edge Catalyst 8300-1n1s-4t2x Catalyst 8300-1n1s-6t Catalyst 8300-2n2s-4t2x Catalyst 8300-2n2s-6t Cloud Services Router 1000v Ios Xe Vg400-2fxs\/2fxo Vg400-4fxs\/4fxo Vg400-6fxs\/6fxo Vg400-8fxs Vg420-132fxs\/6fxo Vg420-144fxs Vg420-84fxs\/6fxo Vg450-144fxs\/k9 Vg450-72fxs\/k9 Vg450\/k9
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-08-02T09:05:35.876Z

Reserved: 2022-10-27T18:47:50.369Z

Link: CVE-2023-20227

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-09-27T18:15:11.370

Modified: 2024-11-21T07:40:56.480

Link: CVE-2023-20227

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses