A vulnerability in the Vector Packet Processor (VPP) of Cisco Packet Data Network Gateway (PGW) could allow an unauthenticated, remote attacker to stop ICMP traffic from being processed over an IPsec connection. This vulnerability is due to the VPP improperly handling a malformed packet. An attacker could exploit this vulnerability by sending a malformed Encapsulating Security Payload (ESP) packet over an IPsec connection. A successful exploit could allow the attacker to stop ICMP traffic over an IPsec connection and cause a denial of service (DoS).
References
Link | Resource |
---|---|
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cisco-pdng-dos-KmzwEy2Q | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
11 Apr 2023, 20:55
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:cisco:asr_5500:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_5700:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:asr_5000:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:packet_data_network_gateway:*:*:*:*:*:*:*:* |
|
References | (CISCO) https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cisco-pdng-dos-KmzwEy2Q - Vendor Advisory | |
First Time |
Cisco packet Data Network Gateway
Cisco Cisco asr 5700 Cisco asr 5500 Cisco asr 5000 |
|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
05 Apr 2023, 17:35
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-04-05 17:15
Updated : 2023-11-07 04:05
NVD link : CVE-2023-20051
Mitre link : CVE-2023-20051
JSON object : View
Products Affected
cisco
- asr_5700
- packet_data_network_gateway
- asr_5500
- asr_5000
CWE