CVE-2017-6731: Cisco IOS XR

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

A vulnerability in Multicast Source Discovery Protocol (MSDP) ingress packet processing for Cisco IOS XR Software could allow an unauthenticated, remote attacker to cause the MSDP session to be unexpectedly reset, causing a short denial of service (DoS) condition. The MSDP session will restart within a few seconds. More Information: CSCvd94828. Known Affected Releases: 4.3.2.MCAST 6.0.2.BASE. Known Fixed Releases: 6.3.1.19i.MCAST 6.2.3.1i.MCAST 6.2.2.17i.MCAST 6.1.4.12i.MCAST.

Affected products

  • Cisco IOS XR: version 4.3.2.mcast only; version 6.0.2.base only

Published 2017-07-10. Last modified 2026-06-17.