cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
429
Views
0
Helpful
1
Replies

CSCui88426 - Cisco IOS Software IKEv2 Denial of Service Vulnerability

yenaungoo
Level 1
Level 1

Hi! I would appreciate if anyone can confirm for below.

For the routers using IPSEC tunnels with ISAKMP enabled (without any IKEv2 config),  can the attacker exploit this vulnerability by sending malformed IKEv2 packets?

Both initiator and responder must have IKEv2 config to be able to trigger this vulnerability? We have many routers using IPSEC tunnels with IKEv1 and not sure whether this vulnerability is affected or not.

Thanks & Regards,

1 Reply 1

yenaungoo
Level 1
Level 1

A device does not need to be configured with any IKEv2-specific features to be vulnerable?