Back to search
CVE-2009-2055
Published: Aug 19, 2009
Modified: Jan 12, 2026
PUBLISHED
Description
Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE message with an invalid attribute, as demonstrated in the wild on 17 August 2009.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[nanog] 20090817 RE: Anyone else seeing "(invalid or corrupt AS path) 3 bytes E01100" ?
mailing-list
x_refsource_MLIST
1022739
vdb-entry
x_refsource_SECTRACK
20090818 Cisco IOS XR Software Border Gateway Protocol Vulnerability
vendor-advisory
x_refsource_CISCO
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now