A vulnerability in the DNS application layer gateway (ALG) functionality used by Network Address Translation (NAT) in Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a logic error that occurs when an affected device inspects certain DNS packets. An attacker could exploit this vulnerability by sending crafted DNS packets through an affected device that is performing NAT for DNS packets. A successful exploit could allow an attacker to cause the device to reload, resulting in a denial of service (DoS) condition on an affected device. The vulnerability can be exploited only by traffic that is sent through an affected device via IPv4 packets. The vulnerability cannot be exploited via IPv6 traffic.
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ios_xe | Cisco | 3.7.0bs (including) | 3.7.0bs (including) |
Ios_xe | Cisco | 3.7.0s (including) | 3.7.0s (including) |
Ios_xe | Cisco | 3.7.0xas (including) | 3.7.0xas (including) |
Ios_xe | Cisco | 3.7.0xbs (including) | 3.7.0xbs (including) |
Ios_xe | Cisco | 3.7.1as (including) | 3.7.1as (including) |
Ios_xe | Cisco | 3.7.1s (including) | 3.7.1s (including) |
Ios_xe | Cisco | 3.7.2s (including) | 3.7.2s (including) |
Ios_xe | Cisco | 3.7.2ts (including) | 3.7.2ts (including) |
Ios_xe | Cisco | 3.7.3s (including) | 3.7.3s (including) |
Ios_xe | Cisco | 3.7.4as (including) | 3.7.4as (including) |
Ios_xe | Cisco | 3.7.4s (including) | 3.7.4s (including) |
Ios_xe | Cisco | 3.7.5s (including) | 3.7.5s (including) |
Ios_xe | Cisco | 3.7.6s (including) | 3.7.6s (including) |
Ios_xe | Cisco | 3.7.7s (including) | 3.7.7s (including) |
Ios_xe | Cisco | 3.7.8s (including) | 3.7.8s (including) |
Ios_xe | Cisco | 3.8.0s (including) | 3.8.0s (including) |
Ios_xe | Cisco | 3.8.1s (including) | 3.8.1s (including) |
Ios_xe | Cisco | 3.8.2s (including) | 3.8.2s (including) |
Ios_xe | Cisco | 3.9.0as (including) | 3.9.0as (including) |
Ios_xe | Cisco | 3.9.0s (including) | 3.9.0s (including) |
Ios_xe | Cisco | 3.9.0xas (including) | 3.9.0xas (including) |
Ios_xe | Cisco | 3.9.1as (including) | 3.9.1as (including) |
Ios_xe | Cisco | 3.9.1s (including) | 3.9.1s (including) |
Ios_xe | Cisco | 3.9.2s (including) | 3.9.2s (including) |
Ios_xe | Cisco | 3.10.0s (including) | 3.10.0s (including) |
Ios_xe | Cisco | 3.10.1s (including) | 3.10.1s (including) |
Ios_xe | Cisco | 3.10.1xbs (including) | 3.10.1xbs (including) |
Ios_xe | Cisco | 3.10.1xcs (including) | 3.10.1xcs (including) |
Ios_xe | Cisco | 3.10.2as (including) | 3.10.2as (including) |
Ios_xe | Cisco | 3.10.2s (including) | 3.10.2s (including) |
Ios_xe | Cisco | 3.10.2ts (including) | 3.10.2ts (including) |
Ios_xe | Cisco | 3.10.3s (including) | 3.10.3s (including) |
Ios_xe | Cisco | 3.10.4s (including) | 3.10.4s (including) |
Ios_xe | Cisco | 3.10.5s (including) | 3.10.5s (including) |
Ios_xe | Cisco | 3.10.6s (including) | 3.10.6s (including) |
Ios_xe | Cisco | 3.10.7s (including) | 3.10.7s (including) |
Ios_xe | Cisco | 3.10.8as (including) | 3.10.8as (including) |
Ios_xe | Cisco | 3.10.8s (including) | 3.10.8s (including) |
Ios_xe | Cisco | 3.10.9s (including) | 3.10.9s (including) |
Ios_xe | Cisco | 3.10.10s (including) | 3.10.10s (including) |
Ios_xe | Cisco | 3.11.0s (including) | 3.11.0s (including) |
Ios_xe | Cisco | 3.11.1s (including) | 3.11.1s (including) |
Ios_xe | Cisco | 3.11.2s (including) | 3.11.2s (including) |
Ios_xe | Cisco | 3.11.3s (including) | 3.11.3s (including) |
Ios_xe | Cisco | 3.11.4s (including) | 3.11.4s (including) |
Ios_xe | Cisco | 3.12.0as (including) | 3.12.0as (including) |
Ios_xe | Cisco | 3.12.0s (including) | 3.12.0s (including) |
Ios_xe | Cisco | 3.12.1s (including) | 3.12.1s (including) |
Ios_xe | Cisco | 3.12.2s (including) | 3.12.2s (including) |
Ios_xe | Cisco | 3.12.3s (including) | 3.12.3s (including) |
Ios_xe | Cisco | 3.12.4s (including) | 3.12.4s (including) |
Ios_xe | Cisco | 3.13.0as (including) | 3.13.0as (including) |
Ios_xe | Cisco | 3.13.0s (including) | 3.13.0s (including) |
Ios_xe | Cisco | 3.13.1s (including) | 3.13.1s (including) |
Ios_xe | Cisco | 3.13.2as (including) | 3.13.2as (including) |
Ios_xe | Cisco | 3.13.2s (including) | 3.13.2s (including) |
Ios_xe | Cisco | 3.13.3s (including) | 3.13.3s (including) |
Ios_xe | Cisco | 3.13.4s (including) | 3.13.4s (including) |
Ios_xe | Cisco | 3.13.5as (including) | 3.13.5as (including) |
Ios_xe | Cisco | 3.13.5s (including) | 3.13.5s (including) |
Ios_xe | Cisco | 3.13.6as (including) | 3.13.6as (including) |
Ios_xe | Cisco | 3.13.6bs (including) | 3.13.6bs (including) |
Ios_xe | Cisco | 3.13.6s (including) | 3.13.6s (including) |
Ios_xe | Cisco | 3.13.7as (including) | 3.13.7as (including) |
Ios_xe | Cisco | 3.13.7s (including) | 3.13.7s (including) |
Ios_xe | Cisco | 3.13.8s (including) | 3.13.8s (including) |
Ios_xe | Cisco | 3.13.9s (including) | 3.13.9s (including) |
Ios_xe | Cisco | 3.13.10s (including) | 3.13.10s (including) |
Ios_xe | Cisco | 3.14.0s (including) | 3.14.0s (including) |
Ios_xe | Cisco | 3.14.1s (including) | 3.14.1s (including) |
Ios_xe | Cisco | 3.14.2s (including) | 3.14.2s (including) |
Ios_xe | Cisco | 3.14.3s (including) | 3.14.3s (including) |
Ios_xe | Cisco | 3.14.4s (including) | 3.14.4s (including) |
Ios_xe | Cisco | 3.15.0s (including) | 3.15.0s (including) |
Ios_xe | Cisco | 3.15.1cs (including) | 3.15.1cs (including) |
Ios_xe | Cisco | 3.15.1s (including) | 3.15.1s (including) |
Ios_xe | Cisco | 3.15.1xbs (including) | 3.15.1xbs (including) |
Ios_xe | Cisco | 3.15.2s (including) | 3.15.2s (including) |
Ios_xe | Cisco | 3.15.2xbs (including) | 3.15.2xbs (including) |
Ios_xe | Cisco | 3.15.3s (including) | 3.15.3s (including) |
Ios_xe | Cisco | 3.15.4s (including) | 3.15.4s (including) |
Ios_xe | Cisco | 3.16.0as (including) | 3.16.0as (including) |
Ios_xe | Cisco | 3.16.0bs (including) | 3.16.0bs (including) |
Ios_xe | Cisco | 3.16.0cs (including) | 3.16.0cs (including) |
Ios_xe | Cisco | 3.16.0s (including) | 3.16.0s (including) |
Ios_xe | Cisco | 3.16.1as (including) | 3.16.1as (including) |
Ios_xe | Cisco | 3.16.1s (including) | 3.16.1s (including) |
Ios_xe | Cisco | 3.16.2as (including) | 3.16.2as (including) |
Ios_xe | Cisco | 3.16.2bs (including) | 3.16.2bs (including) |
Ios_xe | Cisco | 3.16.2s (including) | 3.16.2s (including) |
Ios_xe | Cisco | 3.16.3as (including) | 3.16.3as (including) |
Ios_xe | Cisco | 3.16.3s (including) | 3.16.3s (including) |
Ios_xe | Cisco | 3.16.4as (including) | 3.16.4as (including) |
Ios_xe | Cisco | 3.16.4bs (including) | 3.16.4bs (including) |
Ios_xe | Cisco | 3.16.4cs (including) | 3.16.4cs (including) |
Ios_xe | Cisco | 3.16.4ds (including) | 3.16.4ds (including) |
Ios_xe | Cisco | 3.16.4es (including) | 3.16.4es (including) |
Ios_xe | Cisco | 3.16.4gs (including) | 3.16.4gs (including) |
Ios_xe | Cisco | 3.16.4s (including) | 3.16.4s (including) |
Ios_xe | Cisco | 3.16.5as (including) | 3.16.5as (including) |
Ios_xe | Cisco | 3.16.5bs (including) | 3.16.5bs (including) |
Ios_xe | Cisco | 3.16.5s (including) | 3.16.5s (including) |
Ios_xe | Cisco | 3.16.6bs (including) | 3.16.6bs (including) |
Ios_xe | Cisco | 3.16.6s (including) | 3.16.6s (including) |
Ios_xe | Cisco | 3.16.7as (including) | 3.16.7as (including) |
Ios_xe | Cisco | 3.16.7bs (including) | 3.16.7bs (including) |
Ios_xe | Cisco | 3.16.7s (including) | 3.16.7s (including) |
Ios_xe | Cisco | 3.16.8s (including) | 3.16.8s (including) |
Ios_xe | Cisco | 3.16.9s (including) | 3.16.9s (including) |
Ios_xe | Cisco | 3.16.10as (including) | 3.16.10as (including) |
Ios_xe | Cisco | 3.16.10s (including) | 3.16.10s (including) |
Ios_xe | Cisco | 3.17.0s (including) | 3.17.0s (including) |
Ios_xe | Cisco | 3.17.1as (including) | 3.17.1as (including) |
Ios_xe | Cisco | 3.17.1s (including) | 3.17.1s (including) |
Ios_xe | Cisco | 3.17.2s (including) | 3.17.2s (including) |
Ios_xe | Cisco | 3.17.3s (including) | 3.17.3s (including) |
Ios_xe | Cisco | 3.17.4s (including) | 3.17.4s (including) |
Ios_xe | Cisco | 3.18.0as (including) | 3.18.0as (including) |
Ios_xe | Cisco | 3.18.0s (including) | 3.18.0s (including) |
Ios_xe | Cisco | 3.18.0sp (including) | 3.18.0sp (including) |
Ios_xe | Cisco | 3.18.1asp (including) | 3.18.1asp (including) |
Ios_xe | Cisco | 3.18.1bsp (including) | 3.18.1bsp (including) |
Ios_xe | Cisco | 3.18.1csp (including) | 3.18.1csp (including) |
Ios_xe | Cisco | 3.18.1gsp (including) | 3.18.1gsp (including) |
Ios_xe | Cisco | 3.18.1hsp (including) | 3.18.1hsp (including) |
Ios_xe | Cisco | 3.18.1isp (including) | 3.18.1isp (including) |
Ios_xe | Cisco | 3.18.1s (including) | 3.18.1s (including) |
Ios_xe | Cisco | 3.18.1sp (including) | 3.18.1sp (including) |
Ios_xe | Cisco | 3.18.2asp (including) | 3.18.2asp (including) |
Ios_xe | Cisco | 3.18.2s (including) | 3.18.2s (including) |
Ios_xe | Cisco | 3.18.2sp (including) | 3.18.2sp (including) |
Ios_xe | Cisco | 3.18.3asp (including) | 3.18.3asp (including) |
Ios_xe | Cisco | 3.18.3bsp (including) | 3.18.3bsp (including) |
Ios_xe | Cisco | 3.18.3s (including) | 3.18.3s (including) |
Ios_xe | Cisco | 3.18.3sp (including) | 3.18.3sp (including) |
Ios_xe | Cisco | 3.18.4s (including) | 3.18.4s (including) |
Ios_xe | Cisco | 3.18.4sp (including) | 3.18.4sp (including) |
Ios_xe | Cisco | 3.18.5sp (including) | 3.18.5sp (including) |
Ios_xe | Cisco | 3.18.6sp (including) | 3.18.6sp (including) |
Ios_xe | Cisco | 3.18.7sp (including) | 3.18.7sp (including) |
Ios_xe | Cisco | 3.18.8asp (including) | 3.18.8asp (including) |
Ios_xe | Cisco | 3.18.8sp (including) | 3.18.8sp (including) |
Ios_xe | Cisco | 16.1.1 (including) | 16.1.1 (including) |
Ios_xe | Cisco | 16.1.2 (including) | 16.1.2 (including) |
Ios_xe | Cisco | 16.1.3 (including) | 16.1.3 (including) |
Ios_xe | Cisco | 16.2.1 (including) | 16.2.1 (including) |
Ios_xe | Cisco | 16.2.2 (including) | 16.2.2 (including) |
Ios_xe | Cisco | 16.3.1 (including) | 16.3.1 (including) |
Ios_xe | Cisco | 16.3.1a (including) | 16.3.1a (including) |
Ios_xe | Cisco | 16.3.2 (including) | 16.3.2 (including) |
Ios_xe | Cisco | 16.3.3 (including) | 16.3.3 (including) |
Ios_xe | Cisco | 16.3.4 (including) | 16.3.4 (including) |
Ios_xe | Cisco | 16.3.5 (including) | 16.3.5 (including) |
Ios_xe | Cisco | 16.3.5b (including) | 16.3.5b (including) |
Ios_xe | Cisco | 16.3.6 (including) | 16.3.6 (including) |
Ios_xe | Cisco | 16.3.7 (including) | 16.3.7 (including) |
Ios_xe | Cisco | 16.3.8 (including) | 16.3.8 (including) |
Ios_xe | Cisco | 16.3.9 (including) | 16.3.9 (including) |
Ios_xe | Cisco | 16.3.10 (including) | 16.3.10 (including) |
Ios_xe | Cisco | 16.3.11 (including) | 16.3.11 (including) |
Ios_xe | Cisco | 16.4.1 (including) | 16.4.1 (including) |
Ios_xe | Cisco | 16.4.2 (including) | 16.4.2 (including) |
Ios_xe | Cisco | 16.4.3 (including) | 16.4.3 (including) |
Ios_xe | Cisco | 16.5.1 (including) | 16.5.1 (including) |
Ios_xe | Cisco | 16.5.1a (including) | 16.5.1a (including) |
Ios_xe | Cisco | 16.5.1b (including) | 16.5.1b (including) |
Ios_xe | Cisco | 16.5.2 (including) | 16.5.2 (including) |
Ios_xe | Cisco | 16.5.3 (including) | 16.5.3 (including) |
Ios_xe | Cisco | 16.6.1 (including) | 16.6.1 (including) |
Ios_xe | Cisco | 16.6.2 (including) | 16.6.2 (including) |
Ios_xe | Cisco | 16.6.3 (including) | 16.6.3 (including) |
Ios_xe | Cisco | 16.6.4 (including) | 16.6.4 (including) |
Ios_xe | Cisco | 16.6.4a (including) | 16.6.4a (including) |
Ios_xe | Cisco | 16.6.4s (including) | 16.6.4s (including) |
Ios_xe | Cisco | 16.6.5 (including) | 16.6.5 (including) |
Ios_xe | Cisco | 16.6.5a (including) | 16.6.5a (including) |
Ios_xe | Cisco | 16.6.5b (including) | 16.6.5b (including) |
Ios_xe | Cisco | 16.6.6 (including) | 16.6.6 (including) |
Ios_xe | Cisco | 16.6.7 (including) | 16.6.7 (including) |
Ios_xe | Cisco | 16.6.7a (including) | 16.6.7a (including) |
Ios_xe | Cisco | 16.6.8 (including) | 16.6.8 (including) |
Ios_xe | Cisco | 16.7.1 (including) | 16.7.1 (including) |
Ios_xe | Cisco | 16.7.1a (including) | 16.7.1a (including) |
Ios_xe | Cisco | 16.7.1b (including) | 16.7.1b (including) |
Ios_xe | Cisco | 16.7.2 (including) | 16.7.2 (including) |
Ios_xe | Cisco | 16.7.3 (including) | 16.7.3 (including) |
Ios_xe | Cisco | 16.7.4 (including) | 16.7.4 (including) |
Ios_xe | Cisco | 16.8.1 (including) | 16.8.1 (including) |
Ios_xe | Cisco | 16.8.1a (including) | 16.8.1a (including) |
Ios_xe | Cisco | 16.8.1b (including) | 16.8.1b (including) |
Ios_xe | Cisco | 16.8.1c (including) | 16.8.1c (including) |
Ios_xe | Cisco | 16.8.1d (including) | 16.8.1d (including) |
Ios_xe | Cisco | 16.8.1e (including) | 16.8.1e (including) |
Ios_xe | Cisco | 16.8.1s (including) | 16.8.1s (including) |
Ios_xe | Cisco | 16.8.2 (including) | 16.8.2 (including) |
Ios_xe | Cisco | 16.8.3 (including) | 16.8.3 (including) |
Ios_xe | Cisco | 16.9.1 (including) | 16.9.1 (including) |
Ios_xe | Cisco | 16.9.1a (including) | 16.9.1a (including) |
Ios_xe | Cisco | 16.9.1b (including) | 16.9.1b (including) |
Ios_xe | Cisco | 16.9.1c (including) | 16.9.1c (including) |
Ios_xe | Cisco | 16.9.1d (including) | 16.9.1d (including) |
Ios_xe | Cisco | 16.9.1s (including) | 16.9.1s (including) |
Ios_xe | Cisco | 16.9.2 (including) | 16.9.2 (including) |
Ios_xe | Cisco | 16.9.2a (including) | 16.9.2a (including) |
Ios_xe | Cisco | 16.9.2s (including) | 16.9.2s (including) |
Ios_xe | Cisco | 16.9.3 (including) | 16.9.3 (including) |
Ios_xe | Cisco | 16.9.3a (including) | 16.9.3a (including) |
Ios_xe | Cisco | 16.9.3h (including) | 16.9.3h (including) |
Ios_xe | Cisco | 16.9.3s (including) | 16.9.3s (including) |
Ios_xe | Cisco | 16.9.4 (including) | 16.9.4 (including) |
Ios_xe | Cisco | 16.9.4c (including) | 16.9.4c (including) |
Ios_xe | Cisco | 16.9.5 (including) | 16.9.5 (including) |
Ios_xe | Cisco | 16.9.5f (including) | 16.9.5f (including) |
Ios_xe | Cisco | 16.9.6 (including) | 16.9.6 (including) |
Ios_xe | Cisco | 16.10.1 (including) | 16.10.1 (including) |
Ios_xe | Cisco | 16.10.1a (including) | 16.10.1a (including) |
Ios_xe | Cisco | 16.10.1b (including) | 16.10.1b (including) |
Ios_xe | Cisco | 16.10.1c (including) | 16.10.1c (including) |
Ios_xe | Cisco | 16.10.1d (including) | 16.10.1d (including) |
Ios_xe | Cisco | 16.10.1e (including) | 16.10.1e (including) |
Ios_xe | Cisco | 16.10.1f (including) | 16.10.1f (including) |
Ios_xe | Cisco | 16.10.1g (including) | 16.10.1g (including) |
Ios_xe | Cisco | 16.10.1s (including) | 16.10.1s (including) |
Ios_xe | Cisco | 16.10.2 (including) | 16.10.2 (including) |
Ios_xe | Cisco | 16.10.3 (including) | 16.10.3 (including) |
Ios_xe | Cisco | 16.11.1 (including) | 16.11.1 (including) |
Ios_xe | Cisco | 16.11.1a (including) | 16.11.1a (including) |
Ios_xe | Cisco | 16.11.1b (including) | 16.11.1b (including) |
Ios_xe | Cisco | 16.11.1c (including) | 16.11.1c (including) |
Ios_xe | Cisco | 16.11.1s (including) | 16.11.1s (including) |
Ios_xe | Cisco | 16.11.2 (including) | 16.11.2 (including) |
Ios_xe | Cisco | 16.12.1 (including) | 16.12.1 (including) |
Ios_xe | Cisco | 16.12.1a (including) | 16.12.1a (including) |
Ios_xe | Cisco | 16.12.1c (including) | 16.12.1c (including) |
Ios_xe | Cisco | 16.12.1s (including) | 16.12.1s (including) |
Ios_xe | Cisco | 16.12.1t (including) | 16.12.1t (including) |
Ios_xe | Cisco | 16.12.1w (including) | 16.12.1w (including) |
Ios_xe | Cisco | 16.12.1x (including) | 16.12.1x (including) |
Ios_xe | Cisco | 16.12.1y (including) | 16.12.1y (including) |
Ios_xe | Cisco | 16.12.1z (including) | 16.12.1z (including) |
Ios_xe | Cisco | 16.12.1z1 (including) | 16.12.1z1 (including) |
Ios_xe | Cisco | 16.12.1za (including) | 16.12.1za (including) |
Ios_xe | Cisco | 16.12.2 (including) | 16.12.2 (including) |
Ios_xe | Cisco | 16.12.2a (including) | 16.12.2a (including) |
Ios_xe | Cisco | 16.12.2s (including) | 16.12.2s (including) |
Ios_xe | Cisco | 16.12.2t (including) | 16.12.2t (including) |
Ios_xe | Cisco | 16.12.3 (including) | 16.12.3 (including) |
Ios_xe | Cisco | 16.12.3a (including) | 16.12.3a (including) |
Ios_xe | Cisco | 16.12.3s (including) | 16.12.3s (including) |
Ios_xe | Cisco | 16.12.4 (including) | 16.12.4 (including) |
Ios_xe | Cisco | 16.12.4a (including) | 16.12.4a (including) |
Ios_xe | Cisco | 17.1.1 (including) | 17.1.1 (including) |
Ios_xe | Cisco | 17.1.1a (including) | 17.1.1a (including) |
Ios_xe | Cisco | 17.1.1s (including) | 17.1.1s (including) |
Ios_xe | Cisco | 17.1.1t (including) | 17.1.1t (including) |
Ios_xe | Cisco | 17.1.2 (including) | 17.1.2 (including) |
Ios_xe | Cisco | 17.2.1 (including) | 17.2.1 (including) |
Ios_xe | Cisco | 17.2.1a (including) | 17.2.1a (including) |
Ios_xe | Cisco | 17.2.1r (including) | 17.2.1r (including) |
Ios_xe | Cisco | 17.2.1v (including) | 17.2.1v (including) |
Ios_xe | Cisco | 17.2.2 (including) | 17.2.2 (including) |
Ios_xe | Cisco | 17.2.3 (including) | 17.2.3 (including) |
Ios_xe | Cisco | 17.3.1 (including) | 17.3.1 (including) |
Ios_xe | Cisco | 17.3.1a (including) | 17.3.1a (including) |
Ios_xe | Cisco | 17.3.1w (including) | 17.3.1w (including) |
The programmer may assume that certain events or conditions will never occur or do not need to be worried about, such as low memory conditions, lack of access to resources due to restrictive permissions, or misbehaving clients or components. However, attackers may intentionally trigger these unusual conditions, thus violating the programmer’s assumptions, possibly introducing instability, incorrect behavior, or a vulnerability. Note that this entry is not exclusively about the use of exceptions and exception handling, which are mechanisms for both checking and handling unusual or unexpected conditions.