← KEV catalog
CISA known exploited vulnerability

CVE-2018-0158

Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability

SOURCE FACT

Cisco · IOS Software and Cisco IOS XE Software

A vulnerability in the implementation of Internet Key Exchange Version 1 (IKEv1) functionality in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial-of-service (DoS) condition.

Required action

Apply updates per vendor instructions.

CISA notes

https://nvd.nist.gov/vuln/detail/CVE-2018-0158

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?