Out-of-bounds read in Cisco ASR 9000 Series Aggregation Services Routers and Cisco IOS XR - CVE-2022-20714
Published: April 15, 2022
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary condition in the data plane microcode of Lightspeed-Plus line cards. A remote attacker can send a specially crafted packet, trigger out-of-bounds read error and cause a denial of service condition on the system.
Affected software
Cisco IOS XR