NULL pointer dereference in Cisco Systems, Inc products - CVE-2021-34737

 

NULL pointer dereference in Cisco Systems, Inc products - CVE-2021-34737

Published: September 9, 2021


Vulnerability identifier: #VU56431
CSH Severity: Medium
CVSS v4: 7.1 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-34737
CWE-ID: CWE-476
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a NULL pointer dereference error in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software. A remote non-authenticated attacker can send specially crafted DHCPv4 messages to the affected device, trigger a NULL pointer dereference error and crash the dhcpd process.


Affected software

NCS5000
Cisco IOS XRv 9000 Router
Cisco ASR 9000 Series Aggregation Services Routers
NCS5500
NCS560
NCS540
Cisco IOS XR

How to mitigate CVE-2021-34737

Install update from vendor's website.

Cisco IOS XR - addressed in versions 6.8.1, 7.3.2, 7.4.1
Cisco ASR 9000 Series Aggregation Services Routers - addressed in versions 7.3.2, 7.4.1

External References

Related Security Bulletins