CyberSec.Space Logo
Back to CVE Browser

CVE-2009-2055

Known Exploited (CISA KEV)MEDIUM
5.9
CVSS Severity Score
EPSS Score39.6470%
EPSS Percentile94.27th
PublishedAug 19, 2009
Last ModifiedApr 22, 2026

Vulnerability Description

Cisco IOS XR 3.4.0 through 3.8.1 allows remote attackers to cause a denial of service (session reset) via a BGP UPDATE message with an invalid attribute, as demonstrated in the wild on 17 August 2009.

Affected Platforms (CPE)

πŸ’»
Cisco

Ios Xr

= 3.4
πŸ’»
Cisco

Ios Xr

= 3.4.0
πŸ’»
Cisco

Ios Xr

= 3.4.1
πŸ’»
Cisco

Ios Xr

= 3.4.2
πŸ’»
Cisco

Ios Xr

= 3.4.3
πŸ’»
Cisco

Ios Xr

= 3.5
πŸ’»
Cisco

Ios Xr

= 3.5.2
πŸ’»
Cisco

Ios Xr

= 3.5.3
πŸ’»
Cisco

Ios Xr

= 3.5.4
πŸ’»
Cisco

Ios Xr

= 3.6.0
πŸ’»
Cisco

Ios Xr

= 3.6.1
πŸ’»
Cisco

Ios Xr

= 3.6.2
πŸ’»
Cisco

Ios Xr

= 3.6.3
πŸ’»
Cisco

Ios Xr

= 3.7.0
πŸ’»
Cisco

Ios Xr

= 3.7.1
πŸ’»
Cisco

Ios Xr

= 3.7.2
πŸ’»
Cisco

Ios Xr

= 3.7.3
πŸ’»
Cisco

Ios Xr

= 3.8.0
πŸ’»
Cisco

Ios Xr

= 3.8.1

References & Advisories

Related Vulnerabilities