A vulnerability in the AppNav-XE feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of certain TCP segments. An attacker could exploit this vulnerability by sending a stream of crafted TCP traffic at a high rate through an interface of an affected device. That interface would need to have AppNav interception enabled. A successful exploit could allow the attacker to cause the device to reload.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-appnav-xe-dos-j5MXTR4 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2022-04-13T00:00:00
Updated: 2022-04-15T14:16:41
Reserved: 2021-11-02T00:00:00
Link: CVE-2022-20678
JSON object: View
NVD Information
Status : Modified
Published: 2022-04-15T15:15:12.467
Modified: 2023-11-07T03:42:36.250
Link: CVE-2022-20678
JSON object: View
Redhat Information
No data.