← All CVEs

CVE-2017-12237

high · 7.5Actively exploited

On the CISA Known Exploited Vulnerabilities catalog

Apply updates per vendor instructions.

Added 2022-03-03Remediation due 2022-03-24

A vulnerability in the Internet Key Exchange Version 2 (IKEv2) module of Cisco IOS 15.0 through 15.6 and Cisco IOS XE 3.5 through 16.5 could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to how an affected device processes certain IKEv2 packets. An attacker could exploit this vulnerability by sending specific IKEv2 packets to an affected device to be processed. A successful exploit could allow the attacker to cause high CPU utilization, traceback messages, or a reload of the affected device that leads to a DoS condition. This vulnerability affects Cisco devices that have the Internet Security Association and Key Management Protocol (ISAKMP) enabled. Although only IKEv2 packets can be used to trigger this vulnerability, devices that are running Cisco IOS Software or Cisco IOS XE Software are vulnerable when ISAKMP is enabled. A device does not need to be configured with any IKEv2-specific features to be vulnerable. Many features use IKEv2, including different types of VPNs such as the following: LAN-to-LAN VPN; Remote-access VPN, excluding SSL VPN; Dynamic Multipoint VPN (DMVPN); and FlexVPN. Cisco Bug IDs: CSCvc41277.

7.5
CVSS
7.1%
EPSS (exploit prob.)
94th
EPSS percentile
2017-09-29
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
ciscoios>= 15.0, <= 15.6
ciscoios_xe>= 3.5.0e, <= 16.5
cisco1000_integrated_services_routerall versions
cisco1100-4g/6g_integrated_services_routerall versions
cisco1100-4g_integrated_services_routerall versions
cisco1100-4gltegb_integrated_services_routerall versions
cisco1100-4gltena_integrated_services_routerall versions
cisco1100-4p_integrated_services_routerall versions
cisco1100-6g_integrated_services_routerall versions
cisco1100-8p_integrated_services_routerall versions
cisco1100-lte_integrated_services_routerall versions
cisco1100_integrated_services_routerall versions
cisco1101-4p_integrated_services_routerall versions
cisco1101_integrated_services_routerall versions
cisco1109-2p_integrated_services_routerall versions
cisco1109-4p_integrated_services_routerall versions
cisco1109_integrated_services_routerall versions
cisco1111x-8p_integrated_services_routerall versions
cisco1111x_integrated_services_routerall versions
cisco1120_integrated_services_routerall versions
cisco1131_integrated_services_routerall versions
cisco1160_integrated_services_routerall versions
cisco1240_connected_grid_routerall versions
cisco1801_integrated_service_routerall versions
cisco1802_integrated_service_routerall versions
cisco1803_integrated_service_routerall versions
cisco1811_integrated_service_routerall versions
cisco1812_integrated_service_routerall versions
cisco1841_integrated_service_routerall versions
cisco1861_integrated_service_routerall versions
cisco1905_integrated_services_routerall versions
cisco1906c_integrated_services_routerall versions
cisco1921_integrated_services_routerall versions
cisco1941_integrated_services_routerall versions
cisco1941w_integrated_services_routerall versions
cisco4000_integrated_services_routerall versions
cisco422_integrated_services_routerall versions
cisco4221_integrated_services_routerall versions
cisco4321/k9-rf_integrated_services_routerall versions
cisco4321/k9-ws_integrated_services_routerall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2017-12237