CNNVD-202509-3823 Information

CNNVD ID

CNNVD-202509-3823

CVE-2025-20149

  • CNNVD Published: 2025-09-24

Description (Chinese)

Cisco IOS和Cisco IOS XE都是美国思科(Cisco)公司的产品。Cisco IOS是一套为其网络设备开发的操作系统。Cisco IOS XE是一个操作系统。用于企业有线和无线访问,汇聚,核心和WAN的单一操作系统,Cisco IOS XE降低了业务和网络的复杂性。 Cisco IOS和Cisco IOS XE存在安全漏洞,该漏洞源于缓冲区溢出,可能导致设备意外重启,造成拒绝服务。

Description (English)

Cisco IOS and Cisco IOS XE are all Cisco products. Cisco IOS is an operating system developed for its network equipment. Cisco IOS XE is an operating system. Cisco IOS XE, a single operating system for Cable and Wireless Access, Convergence, Core and WAN, reduces the complexity of operations and networks. Cisco IOS and Cisco IOS XE have a security loophole, which originates from the spilling out of the buffer zone, which could lead to an accidental re-establishment of the equipment, resulting in the denial of services.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Citadel

Published

2025-09-24

Last Modified

2026-02-24

References

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-cli-EB7cZ6yO https://vigilance.fr/vulnerability/Cisco-IOS-IOS-XE-denial-of-service-via-CLI-48288 https://access.redhat.com/security/cve/cve-2025-20149

Patch

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-cli-EB7cZ6yO

Share on: