Cisco Ios Xr Software vulnerabilities
114 known vulnerabilities affecting cisco/cisco_ios_xr_software.
Total CVEs
114
CISA KEV
4
actively exploited
Public exploits
0
Exploited in wild
5
Severity breakdown
CRITICAL5HIGH62MEDIUM47
Vulnerabilities
Page 4 of 6
CVE-2024-20327P3HIGHCVSS 7.4v5.2.0v5.2.2+59 more2024-03-13
CVE-2024-20327 [HIGH] CWE-20 CVE-2024-20327: A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Ci
A vulnerability in the PPP over Ethernet (PPPoE) termination feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to crash the ppp_ma process, resulting in a denial of service (DoS) condition.
This vulnerability is due to the improper handling of malformed PPPoE packet
nvd
CVE-2024-20406P3HIGHCVSS 7.4v7.4.1v6.8.1+28 more2024-09-11
CVE-2024-20406 [HIGH] CWE-20 CVE-2024-20406: A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (I
A vulnerability in the segment routing feature for the Intermediate System-to-Intermediate System (IS-IS) protocol of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
This vulnerability is due to insufficient input validation of ingress IS-IS packets. An attacke
nvd
CVE-2021-1440P3MEDIUMCVSS 6.8v6.6.1v6.5.3+19 more2024-11-18
CVE-2021-1440 [MEDIUM] CWE-617 CVE-2021-1440: A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Ci
A vulnerability in the implementation of the Resource Public Key Infrastructure (RPKI) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the Border Gateway Protocol (BGP) process to crash, resulting in a denial of service (DoS) condition.
This vulnerability is due to the incorrect handling of a specific RPKI to
nvd
CVE-2021-34713P3HIGHCVSS 7.4vn/a2021-09-09
CVE-2021-34713 [HIGH] CWE-399 CVE-2021-34713: A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series A
A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to cause the affected line card to reboot. This vulnerability is due to incorrect handling of specific Ethernet frames that cause a spin loop that can make the network process
nvd
CVE-2024-20317P3HIGHCVSS 7.4v7.7.1v7.8.1+8 more2024-09-11
CVE-2024-20317 [HIGH] CWE-684 CVE-2024-20317: A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cis
A vulnerability in the handling of specific Ethernet frames by Cisco IOS XR Software for various Cisco Network Convergence System (NCS) platforms could allow an unauthenticated, adjacent attacker to cause critical priority packets to be dropped, resulting in a denial of service (DoS) condition.
This vulnerability is due to incorrect classification of
nvd
CVE-2023-20135P3HIGHCVSS 7.0v7.5.3v7.5.2+8 more2023-09-13
CVE-2023-20135 [HIGH] CWE-347 CVE-2023-20135: A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, loc
A vulnerability in Cisco IOS XR Software image verification checks could allow an authenticated, local attacker to execute arbitrary code on the underlying operating system.
This vulnerability is due to a time-of-check, time-of-use (TOCTOU) race condition when an install query regarding an ISO image is performed during an install operation that uses a
nvd
CVE-2024-20318P3HIGHCVSS 7.4v6.5.2v6.5.3+34 more2024-03-13
CVE-2024-20318 [HIGH] CWE-20 CVE-2024-20318: A vulnerability in the Layer 2 Ethernet services of Cisco IOS XR Software could allow an unauthentic
A vulnerability in the Layer 2 Ethernet services of Cisco IOS XR Software could allow an unauthenticated, adjacent attacker to cause the line card network processor to reset, resulting in a denial of service (DoS) condition.
This vulnerability is due to the incorrect handling of specific Ethernet frames that are received on line cards that have the Lay
nvd
CVE-2025-20141P3HIGHCVSS 7.4v7.9.22025-03-12
CVE-2025-20141 [HIGH] CWE-770 CVE-2025-20141: A vulnerability in the handling of specific packets that are punted from a line card to a route proc
A vulnerability in the handling of specific packets that are punted from a line card to a route processor in Cisco IOS XR Software Release 7.9.2 could allow an unauthenticated, adjacent attacker to cause control plane traffic to stop working on multiple Cisco IOS XR platforms.
This vulnerability is due to incorrect handling of packets that are punted
nvd
CVE-2019-16027P3MEDIUMCVSS 6.5≥ unspecified, < n/a2020-01-26
CVE-2019-16027 [MEDIUM] CWE-20 CVE-2019-16027: A vulnerability in the implementation of the Intermediate System–to–Intermediate System
A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition in the IS–IS process. The vulnerability is due to improper handling of a Simple Network Management Protocol (S
nvd
CVE-2019-12709P3MEDIUMCVSS 6.7≥ unspecified, < n/a2019-09-25
CVE-2019-12709 [MEDIUM] CWE-78 CVE-2019-12709: A vulnerability in a CLI command related to the virtualization manager (VMAN) in Cisco IOS XR Softwa
A vulnerability in a CLI command related to the virtualization manager (VMAN) in Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an authenticated, local attacker to execute arbitrary commands on the underlying Linux operating system with root privileges. The vulnerability is due to insufficient validation of a
nvd
CVE-2021-34722P3MEDIUMCVSS 6.7vn/a2021-09-09
CVE-2021-34722 [MEDIUM] CWE-78 CVE-2021-34722: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell of an affected device and execute arbitrary commands with root privileges. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2021-34721P3MEDIUMCVSS 6.7vn/a2021-09-09
CVE-2021-34721 [MEDIUM] CWE-78 CVE-2021-34721: Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local att
Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access to the underlying root shell of an affected device and execute arbitrary commands with root privileges. For more information about these vulnerabilities, see the Details section of this advisory.
nvd
CVE-2024-20315P3MEDIUMCVSS 5.8v7.9.1v7.9.2+1 more2024-03-13
CVE-2024-20315 [MEDIUM] CWE-284 CVE-2024-20315: A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direct
A vulnerability in the access control list (ACL) processing on MPLS interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL.
This vulnerability is due to improper assignment of lookup keys to internal interface contexts. An attacker could exploit this vulnerability by at
nvd
CVE-2025-20144P3MEDIUMCVSS 5.8v6.5.3v6.5.2+41 more2025-03-12
CVE-2025-20144 [MEDIUM] CWE-284 CVE-2025-20144: A vulnerability in the hybrid access control list (ACL) processing of IPv4 packets in Cisco IOS XR S
A vulnerability in the hybrid access control list (ACL) processing of IPv4 packets in Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL.
This vulnerability is due to incorrect handling of packets when a specific configuration of the hybrid ACL exists. An attacker could exploit this vulnerability by att
nvd
CVE-2019-1846P4HIGHCVSS 7.4≥ unspecified, < n/a2019-05-16
CVE-2019-1846 [HIGH] CWE-20 CVE-2019-1846: A vulnerability in the Multiprotocol Label Switching (MPLS) Operations, Administration, and Maintena
A vulnerability in the Multiprotocol Label Switching (MPLS) Operations, Administration, and Maintenance (OAM) implementation of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is due to the
nvd
CVE-2019-1918P4HIGHCVSS 7.4≥ unspecified, < n/a2019-08-07
CVE-2019-1918 [HIGH] CWE-20 CVE-2019-1918: A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS&
A vulnerability in the implementation of Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS-IS area to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of IS–IS link-state protocol data units (PD
nvd
CVE-2018-15428P4MEDIUMCVSS 6.8vn/a2018-10-05
CVE-2018-15428 [MEDIUM] CWE-20 CVE-2018-15428: A vulnerability in the implementation of Border Gateway Protocol (BGP) functionality in Cisco IOS XR
A vulnerability in the implementation of Border Gateway Protocol (BGP) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain BGP update messages. An attacker could exploit this vulnerability by sending BGP update
nvd
CVE-2019-1910P4HIGHCVSS 7.4≥ unspecified, < 6.6.32019-08-07
CVE-2019-1910 [HIGH] CWE-20 CVE-2019-1910: A vulnerability in the implementation of the Intermediate System–to–Intermediate System
A vulnerability in the implementation of the Intermediate System–to–Intermediate System (IS–IS) routing protocol functionality in Cisco IOS XR Software could allow an unauthenticated attacker who is in the same IS–IS area to cause a denial of service (DoS) condition. The vulnerability is due to incorrect processing of crafted IS–IS link-state protocol dat
nvd
CVE-2022-20758P4MEDIUMCVSS 6.8vn/a2022-04-15
CVE-2022-20758 [MEDIUM] CWE-399 CVE-2022-20758: A vulnerability in the implementation of the Border Gateway Protocol (BGP) Ethernet VPN (EVPN) funct
A vulnerability in the implementation of the Border Gateway Protocol (BGP) Ethernet VPN (EVPN) functionality in Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to the incorrect processing of a BGP update message that contains specific EVPN attributes. An at
nvd
CVE-2024-20322P3MEDIUMCVSS 5.8v7.10.2v7.11.12024-03-13
CVE-2024-20322 [MEDIUM] CWE-284 CVE-2024-20322: A vulnerability in the access control list (ACL) processing on Pseudowire interfaces in the ingress
A vulnerability in the access control list (ACL) processing on Pseudowire interfaces in the ingress direction of Cisco IOS XR Software could allow an unauthenticated, remote attacker to bypass a configured ACL.
This vulnerability is due to improper assignment of lookup keys to internal interface contexts. An attacker could exploit this vulnerability
nvd