← Back

Ios Xr

ios_xr

Vendor: Cisco • 196 CVEs

CVEs (196)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cisco
8Asr 9000 Rsp440 Router
Asr 9001Asr 9006+5 more
May 6, 2026
Jul 7, 2014
N/A· v4
N/A· v3
6.4 MEDIUM· v2
Cisco IOS XR on Trident line cards in ASR 9000 devices lacks a static punt policer, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted packets, aka Bug ID CSCun83985.
1Cisco
7Asr 9001
Asr 9006Asr 9010+4 more
May 6, 2026
Jun 14, 2014
N/A· v4
N/A· v3
7.1 HIGH· v2
Cisco IOS XR 4.1.2 through 5.1.1 on ASR 9000 devices, when a Trident-based line card is used, allows remote attackers to cause a denial of service (NP chip and line card reload) via malformed IPv6 packets, aka Bug ID CSC...Show more
Cisco IOS XR 4.1.2 through 5.1.1 on ASR 9000 devices, when a Trident-based line card is used, allows remote attackers to cause a denial of service (NP chip and line card reload) via malformed IPv6 packets, aka Bug ID CSCun71928.Show less
1Cisco
1Ios Xr
May 6, 2026
May 20, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug IDs CSCum85558, CSCum20949, CSCul61849, and CSCul71149.
1Cisco
1Ios Xr
May 6, 2026
May 20, 2014
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCul80924.
1Cisco
1Ios Xr
May 6, 2026
Apr 5, 2014
N/A· v4
N/A· v3
6.1 MEDIUM· v2
Cisco IOS XR does not properly throttle ICMPv6 redirect packets, which allows remote attackers to cause a denial of service (IPv4 and IPv6 transit outage) via crafted redirect messages, aka Bug ID CSCum14266.
1Cisco
1Ios Xr
Apr 29, 2026
Nov 29, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The SNMP module in Cisco IOS XR allows remote attackers to cause a denial of service (process reload) via a request for an unspecified MIB, aka Bug ID CSCuh43144.
1Cisco
1Ios Xr
Apr 29, 2026
Nov 8, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The OSPFv3 functionality in Cisco IOS XR 5.1 allows remote attackers to cause a denial of service (process crash) via a malformed LSA Type-1 packet, aka Bug ID CSCuj82176.
1Cisco
1Ios Xr
Apr 29, 2026
Oct 25, 2013
N/A· v4
N/A· v3
7.1 HIGH· v2
Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which allows remote attackers to cause a denial of service (transmission out...Show more
Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which allows remote attackers to cause a denial of service (transmission outage) via (1) IPv4 or (2) IPv6 traffic, aka Bug ID CSCuh30380.Show less
1Cisco
1Ios Xr
Apr 29, 2026
Oct 2, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
The UDP process in Cisco IOS XR 4.3.1 does not free packet memory upon detecting full packet queues, which allows remote attackers to cause a denial of service (memory consumption) via UDP packets to listening ports, aka...Show more
The UDP process in Cisco IOS XR 4.3.1 does not free packet memory upon detecting full packet queues, which allows remote attackers to cause a denial of service (memory consumption) via UDP packets to listening ports, aka Bug ID CSCue69413.Show less
1Cisco
1Ios Xr
Apr 29, 2026
Sep 27, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The PPTP-ALG component in CRS Carrier Grade Services Engine (CGSE) and ASR 9000 Integrated Service Module (ISM) in Cisco IOS XR allows remote attackers to cause a denial of service (module reset) via crafted packet strea...Show more
The PPTP-ALG component in CRS Carrier Grade Services Engine (CGSE) and ASR 9000 Integrated Service Module (ISM) in Cisco IOS XR allows remote attackers to cause a denial of service (module reset) via crafted packet streams, aka Bug ID CSCue91963.Show less
1Cisco
1Ios Xr
Apr 29, 2026
Aug 30, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The RIP process in Cisco IOS XR allows remote attackers to cause a denial of service (process crash) via a crafted version-2 RIP packet, aka Bug ID CSCue46731.
1Cisco
1Ios Xr
Apr 29, 2026
Aug 13, 2013
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload) by starting an outbound flood of large ICMP Echo Request packets and s...Show more
Cisco IOS XR allows local users to cause a denial of service (Silicon Packet Processor memory corruption, improper mutex handling, and device reload) by starting an outbound flood of large ICMP Echo Request packets and stopping this with a CTRL-C sequence, aka Bug ID CSCui60347.Show less
1Cisco
1Ios Xr
Apr 29, 2026
May 23, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Memory leak in the SNMP process in Cisco IOS XR allows remote attackers to cause a denial of service (memory consumption or process reload) by sending many port-162 UDP packets, aka Bug ID CSCug80345.
1Cisco
1Ios Xr
Apr 29, 2026
May 3, 2013
N/A· v4
N/A· v3
4.0 MEDIUM· v2
The SNMP module in Cisco IOS XR allows remote authenticated users to cause a denial of service (process restart) via crafted SNMP packets, aka Bug ID CSCue69472.
1Cisco
1Ios Xr
Apr 29, 2026
Apr 29, 2013
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Memory leak in the SNMP module in Cisco IOS XR allows remote authenticated users to cause a denial of service (memory consumption and process restart) via crafted SNMP packets, aka Bug ID CSCue31546.
1Cisco
1Ios Xr
Apr 29, 2026
Mar 26, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The traffic engineering (TE) processing subsystem in Cisco IOS XR allows remote attackers to cause a denial of service (process restart) via crafted TE packets, aka Bug ID CSCue04000.
1Cisco
3Ios
Ios XeIos Xr
Apr 29, 2026
Sep 27, 2012
N/A· v4
N/A· v3
7.1 HIGH· v2
The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of service (multiple connection resets) by leveraging a peer relationship an...Show more
The BGP implementation in Cisco IOS 15.2, IOS XE 3.5.xS before 3.5.2S, and IOS XR 4.1.0 through 4.2.2 allows remote attackers to cause a denial of service (multiple connection resets) by leveraging a peer relationship and sending a malformed attribute, aka Bug IDs CSCtt35379, CSCty58300, CSCtz63248, and CSCtz62914.Show less
1Cisco
3Asr 9000 Rsp440 Router
Crs Performance Route ProcessorIos Xr
Apr 29, 2026
May 31, 2012
N/A· v4
N/A· v3
7.8 HIGH· v2
Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.
1Cisco
1Ios Xr
Apr 29, 2026
May 2, 2012
N/A· v4
N/A· v3
7.8 HIGH· v2
The NETIO and IPV4_IO processes in Cisco IOS XR 3.8 through 4.1, as used in Cisco Carrier Routing System and other products, allow remote attackers to cause a denial of service (CPU consumption) via crafted network traff...Show more
The NETIO and IPV4_IO processes in Cisco IOS XR 3.8 through 4.1, as used in Cisco Carrier Routing System and other products, allow remote attackers to cause a denial of service (CPU consumption) via crafted network traffic, aka Bug ID CSCti59888.Show less
1Cisco
3Asr 9006 Router
Asr 9010 RouterIos Xr
Apr 29, 2026
Jul 28, 2011
N/A· v4
N/A· v3
7.8 HIGH· v2
Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers (ASR) 9000 series devices allows remote attackers to cause a denial of service (line-card reload) via an IPv4 packet, aka...Show more
Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers (ASR) 9000 series devices allows remote attackers to cause a denial of service (line-card reload) via an IPv4 packet, aka Bug ID CSCtr26695.Show less