A vulnerability in the IP Address Resolution Protocol (ARP) feature of Cisco IOS XE Software for Cisco ASR 1000 Series Aggregation Services Routers with a 20-Gbps Embedded Services Processor (ESP) installed could allow an unauthenticated, adjacent attacker to cause an affected device to reload, resulting in a denial of service condition. The vulnerability is due to insufficient error handling when an affected device has reached platform limitations. An attacker could exploit this vulnerability by sending a malicious series of IP ARP messages to an affected device. A successful exploit could allow the attacker to exhaust system resources, which would eventually cause the affected device to reload.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
21 Nov 2024, 05:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esp20-arp-dos-GvHVggqJ - Vendor Advisory |
23 May 2023, 13:55
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:cisco:isr4321\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100-lte:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100-4gltena:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100-6g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4331\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-ws:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100-4g:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr1100-4gltegb:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4321\/k9-rf:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr4351\/k9-rf:-:*:*:*:*:*:*:* |
cpe:2.3:h:cisco:1100_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-6g_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9-ws_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4gltegb_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-lte_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4gltena_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351\/k9-rf_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4g_integrated_services_router:-:*:*:*:*:*:*:* |
22 May 2023, 18:57
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:cisco:isr_1100-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4321:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-2p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1120:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1111x-8p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4351:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1160:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1100-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4431:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_111x:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_4331:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1101-4p:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:isr_1109:-:*:*:*:*:*:*:* |
cpe:2.3:h:cisco:1160_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1101-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4331_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4321_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1120_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4461_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1111x_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109-2p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4431_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:111x_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1111x-8p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:4351_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1109-4p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1100-8p_integrated_services_router:-:*:*:*:*:*:*:* cpe:2.3:h:cisco:1101_integrated_services_router:-:*:*:*:*:*:*:* |
Information
Published : 2020-09-24 18:15
Updated : 2024-11-21 05:31
NVD link : CVE-2020-3508
Mitre link : CVE-2020-3508
CVE.ORG link : CVE-2020-3508
JSON object : View
Products Affected
cisco
- catalyst_3850-24xs-e
- catalyst_3850-24s-e
- catalyst_3850-48t-e
- catalyst_3850-24s-s
- 4351\/k9-rf_integrated_services_router
- asr_1000
- 4351\/k9-ws_integrated_services_router
- catalyst_3850-24t-e
- catalyst_3650-24ps-e
- catalyst_3850-48u-l
- catalyst_3850-48f-s
- asr_1001-x
- 4461_integrated_services_router
- asr_1023
- catalyst_3650-48fs-l
- catalyst_3650-24pd-l
- catalyst_3850-24p-l
- catalyst_3650-24pdm-e
- asr_1013
- 4331_integrated_services_router
- catalyst_3650-8x24pd-e
- catalyst_3650-48pd-s
- asr_1000-x
- catalyst_3850-48f-e
- catalyst_3850-48xs-f-s
- catalyst_c3850-12x48u-e
- catalyst_3650-48fs-e
- 4351_integrated_services_router
- catalyst_3650-48fq-e
- catalyst_3650-48pq-s
- catalyst_3650-24ps-s
- catalyst_3650-48ps-e
- catalyst_3650-48fd-l
- catalyst_3650-24ts-e
- catalyst_3650-48pq-e
- catalyst_3650-48fd-s
- catalyst_3650-48ts-s
- 1100-4gltena_integrated_services_router
- catalyst_3850-48f-l
- catalyst_3650-24ps-l
- catalyst_3650-48fs-s
- catalyst_3850-24t-s
- catalyst_3650-24ts-s
- catalyst_3650-8x24pd-l
- 1109_integrated_services_router
- 1160_integrated_services_router
- catalyst_3650-48ts-e
- catalyst_3650-24pdm-s
- asr_1002
- 1111x-8p_integrated_services_router
- catalyst_3650-48tq-s
- asr_1004
- catalyst_3850-24t-l
- catalyst_3650-48td-e
- catalyst_3850-48t-l
- catalyst_3650-48td-s
- 1000v
- catalyst_3850-16xs-e
- catalyst_3650-48fqm-e
- catalyst_3850-12s-e
- 4321\/k9-rf_integrated_services_router
- catalyst_3850-24p-e
- catalyst_3650-24td-e
- 4331\/k9-rf_integrated_services_router
- catalyst_3650-48fq-s
- catalyst_3850-48xs-s
- catalyst_3850-24xu-e
- catalyst_3850-48xs-e
- catalyst_3650-48fq-l
- 4431_integrated_services_router
- catalyst_3850-24xu-l
- catalyst_3650-24td-l
- 1111x_integrated_services_router
- catalyst_3850-24u-l
- catalyst_3650-48ps-l
- catalyst_c3850-12x48u-s
- 4321_integrated_services_router
- catalyst_3650-48pd-l
- catalyst_3650-48fqm-l
- catalyst_3650-24pdm-l
- catalyst_3650-12x48fd-l
- catalyst_3850-24xs-s
- asr_1002-x
- catalyst_3850-48p-e
- catalyst_3650-48tq-l
- 1100-4gltegb_integrated_services_router
- 111x_integrated_services_router
- catalyst_3650-48pq-l
- catalyst_3650-12x48fd-e
- catalyst_3850-48p-s
- catalyst_3650-48pd-e
- catalyst_3650-48tq-e
- catalyst_3850-24p-s
- catalyst_3650-24ts-l
- 1100-lte_integrated_services_router
- catalyst_3850-12s-s
- catalyst_3650-24td-s
- catalyst_3850-48t-s
- asr_1006
- 1109-2p_integrated_services_router
- asr_1001
- catalyst_3650-12x48fd-s
- catalyst_3850-16xs-s
- catalyst_3850-24xu-s
- catalyst_3850-48u-s
- catalyst_3650-48fqm-s
- 4321\/k9_integrated_services_router
- 4331\/k9_integrated_services_router
- asr_1001-hx
- 1100_integrated_services_router
- ios_xe
- 1120_integrated_services_router
- catalyst_3850-48xs-f-e
- 4321\/k9-ws_integrated_services_router
- catalyst_3650-48td-l
- 1101-4p_integrated_services_router
- catalyst_3850-24u-e
- 1109-4p_integrated_services_router
- catalyst_3850-48p-l
- catalyst_3650-8x24pd-s
- catalyst_3650-48fd-e
- catalyst_3850-12xs-e
- catalyst_3850-32xs-e
- asr_1002-hx
- 1100-4p_integrated_services_router
- 1100-8p_integrated_services_router
- catalyst_3650-48ts-l
- csr1000v
- 1100-6g_integrated_services_router
- 4351\/k9_integrated_services_router
- catalyst_3650-24pd-e
- catalyst_c3850-12x48u-l
- 1100-4g_integrated_services_router
- catalyst_3650-48ps-s
- catalyst_3850-48u-e
- catalyst_3850-32xs-s
- catalyst_3850-12xs-s
- catalyst_3850-24u-s
- 4331\/k9-ws_integrated_services_router
- 1101_integrated_services_router
- catalyst_3650-24pd-s
CWE
CWE-400
Uncontrolled Resource Consumption