Cisco IOS XR Software Discovery Protocol Format String Vulnerability
Vendor: Cisco
Product: IOS XR
Added: 2021-11-03
Due Date: 2022-05-03
Description:
Cisco IOS XR improperly validates string input from certain fields in Cisco Discovery Protocol messages. Exploitation could allow an unauthenticated, adjacent attacker to execute code with administrative privileges or cause a reload on an affected device.
Required Action:
Apply updates per vendor instructions.
CWEs: