CVE-2019-1738

A vulnerability in the Network-Based Application Recognition (NBAR) feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. This vulnerability is due to a parsing issue on DNS packets. An attacker could exploit these vulnerabilities by sending crafted DNS packets through routers that are running an affected version and have NBAR enabled. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
ciscoCNA
8.6 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
VendorProductVersion
ciscoios
15.1\(2\)sg8a
ciscoios
15.1\(3\)svg3d
ciscoios
15.1\(3\)svi1b
ciscoios
15.1\(3\)svk4b
ciscoios
15.1\(3\)svk4c
ciscoios
15.1\(3\)svm3
ciscoios
15.1\(3\)svn2
ciscoios
15.1\(3\)svo1
ciscoios
15.1\(3\)svo2
ciscoios
15.1\(3\)svo3
ciscoios
15.1\(3\)svo4
ciscoios
15.1\(3\)svp1
ciscoios
15.1\(3\)svp2
ciscoios
15.1\(4\)m12c
ciscoios
15.2\(3\)ea1
ciscoios
15.2\(4a\)ea5
ciscoios
15.3\(3\)ja1n
ciscoios
15.3\(3\)jd
ciscoios
15.3\(3\)jd2
ciscoios
15.3\(3\)jd3
ciscoios
15.3\(3\)jd4
ciscoios
15.3\(3\)jd5
ciscoios
15.3\(3\)jd6
ciscoios
15.3\(3\)jd7
ciscoios
15.3\(3\)jd8
ciscoios
15.3\(3\)jd9
ciscoios
15.3\(3\)jd11
ciscoios
15.3\(3\)jd12
ciscoios
15.3\(3\)jd13
ciscoios
15.3\(3\)jd14
ciscoios
15.3\(3\)je
ciscoios
15.3\(3\)jf
ciscoios
15.3\(3\)jf1
ciscoios
15.3\(3\)jf2
ciscoios
15.3\(3\)jf4
ciscoios
15.3\(3\)jf5
ciscoios
15.3\(3\)jf35
ciscoios
15.3\(3\)jg
ciscoios
15.3\(3\)jg1
ciscoios
15.3\(3\)jh
ciscoios
15.3\(3\)ji
ciscoios
15.3\(3\)ji2
ciscoios
15.3\(3\)jnp
ciscoios
15.3\(3\)jnp1
ciscoios
15.3\(3\)jnp3
ciscoios
15.3\(3\)jpb
ciscoios
15.3\(3\)jpb1
ciscoios
15.3\(3\)jpc
ciscoios
15.3\(3\)jpc1
ciscoios
15.3\(3\)jpc2
ciscoios
15.3\(3\)jpc3
ciscoios
15.3\(3\)jpc5
ciscoios
15.3\(3\)jpd
ciscoios
15.5\(3\)m
ciscoios
15.5\(3\)m0a
ciscoios
15.5\(3\)m1
ciscoios
15.5\(3\)m2
ciscoios
15.5\(3\)m2a
ciscoios
15.5\(3\)m3
ciscoios
15.5\(3\)m4
ciscoios
15.5\(3\)m4a
ciscoios
15.5\(3\)m4b
ciscoios
15.5\(3\)m4c
ciscoios
15.5\(3\)m5
ciscoios
15.5\(3\)m5a
ciscoios
15.5\(3\)s
ciscoios
15.5\(3\)s0a
ciscoios
15.5\(3\)s1
ciscoios
15.5\(3\)s1a
ciscoios
15.5\(3\)s2
ciscoios
15.5\(3\)s3
ciscoios
15.5\(3\)s4
ciscoios
15.5\(3\)s5
ciscoios
15.5\(3\)sn
ciscoios
15.5\(3\)sn0a
ciscoios
15.6\(1\)s
ciscoios
15.6\(1\)s1
ciscoios
15.6\(1\)s2
ciscoios
15.6\(1\)s3
ciscoios
15.6\(1\)s4
ciscoios
15.6\(1\)sn
ciscoios
15.6\(1\)sn1
ciscoios
15.6\(1\)sn2
ciscoios
15.6\(1\)sn3
ciscoios
15.6\(1\)t
ciscoios
15.6\(1\)t0a
ciscoios
15.6\(1\)t1
ciscoios
15.6\(1\)t2
ciscoios
15.6\(2\)s
ciscoios
15.6\(2\)s1
ciscoios
15.6\(2\)s2
ciscoios
15.6\(2\)s3
ciscoios
15.6\(2\)s4
ciscoios
15.6\(2\)sn
ciscoios
15.6\(2\)sp3b
ciscoios
15.6\(2\)t
ciscoios
15.6\(2\)t0a
ciscoios
15.6\(2\)t1
ciscoios
15.6\(2\)t2
ciscoios
15.6\(3\)m
ciscoios
15.6\(3\)m0a
ciscoios
15.6\(3\)m1
ciscoios
15.6\(3\)m1a
ciscoios
15.6\(3\)m1b
ciscoios
15.6\(3\)sn
ciscoios
15.6\(4\)sn
ciscoios
15.6\(5\)sn
ciscoios
15.6\(6\)sn
ciscoios
15.6\(7\)sn
ciscoios_xe
3.2.0ja:ja
ciscoios_xe
3.16.0as:as
ciscoios_xe
3.16.0bs:bs
ciscoios_xe
3.16.0cs:cs
ciscoios_xe
3.16.0s:s
ciscoios_xe
3.16.1as:as
ciscoios_xe
3.16.1s:s
ciscoios_xe
3.16.2as:as
ciscoios_xe
3.16.2bs:bs
ciscoios_xe
3.16.2s:s
ciscoios_xe
3.16.3as:as
ciscoios_xe
3.16.3s:s
ciscoios_xe
3.16.4as:as
ciscoios_xe
3.16.4bs:bs
ciscoios_xe
3.16.4cs:cs
ciscoios_xe
3.16.4ds:ds
ciscoios_xe
3.16.4es:es
ciscoios_xe
3.16.4gs:gs
ciscoios_xe
3.16.4s:s
ciscoios_xe
3.16.5as:as
ciscoios_xe
3.16.5s:s
ciscoios_xe
3.17.0s:s
ciscoios_xe
3.17.1as:as
ciscoios_xe
3.17.1s:s
ciscoios_xe
3.17.3s:s
ciscoios_xe
3.17.4s:s
ciscoios_xe
3.18.0as:as
ciscoios_xe
3.18.0s:s
ciscoios_xe
3.18.0sp:sp
ciscoios_xe
3.18.1asp:asp
ciscoios_xe
3.18.1bsp:bsp
ciscoios_xe
3.18.1csp:csp
ciscoios_xe
3.18.1gsp:gsp
ciscoios_xe
3.18.1hsp:hsp
ciscoios_xe
3.18.1isp:isp
ciscoios_xe
3.18.1s:s
ciscoios_xe
3.18.1sp:sp
ciscoios_xe
3.18.2asp:asp
ciscoios_xe
3.18.2s:s
ciscoios_xe
3.18.2sp:sp
ciscoios_xe
3.18.3s:s
ciscoios_xe
3.18.4s:s
ciscoios_xe
16.2.1
ciscoios_xe
16.2.2
ciscoios_xe
16.3.1
ciscoios_xe
16.3.1a:a
ciscoios_xe
16.3.2
ciscoios_xe
16.3.3
ciscoios_xe
16.3.4
ciscoios_xe
16.4.1
ciscoios_xe
16.4.2
ciscoios_xe
16.4.3
ciscoios_xe
16.5.1
ciscoios_xe
16.5.1a:a
ciscoios_xe
16.5.1b:b
𝑥
= Vulnerable software versions