Error handling in Cisco IOS XE - CVE-2018-0155
Published: March 30, 2018 / Updated: March 8, 2022
Vulnerability identifier: #VU11368
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-0155
CWE-ID: CWE-388
Exploitation vector: Remote access
Exploit availability:
The vulnerability is being exploited in the wild
Vulnerability details
The vulnerability allows a remote unauthenticated attacker to cause DoS condition on the target system.
The weakness exists in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches due to insufficient error handling when the BFD header in a BFD packet is incomplete. A remote attacker can send a specially crafted BFD message to or across an affected switch and cause the service to crash.
The weakness exists in the Bidirectional Forwarding Detection (BFD) offload implementation of Cisco Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches due to insufficient error handling when the BFD header in a BFD packet is incomplete. A remote attacker can send a specially crafted BFD message to or across an affected switch and cause the service to crash.
Affected software
Cisco IOS XE
Allen-Bradley Stratix 8300 Modular Managed Ethernet Switches
Allen-Bradley Stratix 8300 Modular Managed Ethernet Switches
How to mitigate CVE-2018-0155
Update to versions 15.2(6.5.1i)E1, 15.2(6.4.66i)E1, 15.2(6.4.0i)E1, 15.2(6.3.46i)E, 15.2(6.2.20i)E, 15.2(6)E1, 15.2(4.7.6)EA7 or 15.2(2)E8.