Cisco IOS XR Software IS-IS Multi-Instance Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the Intermediate System-to-Intermediate System (IS-IS) multi-instance routing feature of Cisco IOS XR Software. This vulnerability allows an unauthenticated, adjacent attacker to cause the IS-IS process to restart unexpectedly. The issue arises from inadequate input validation of incoming IS-IS packets. An attacker could exploit this vulnerability by sending crafted IS-IS packets to an affected device after establishing an adjacency. Exploitation would lead to an unexpected restart of the IS-IS process, causing a temporary loss of connectivity to advertised networks and creating a denial-of-service condition. To exploit this vulnerability, an attacker must be Layer 2-adjacent to the affected device and have formed an adjacency.

Impact

Exploitation of this vulnerability causes the IS-IS process to restart unexpectedly, leading to a temporary loss of connectivity to advertised networks and a denial-of-service condition.

Remediation

Cisco has released software updates to address this vulnerability. Customers are advised to upgrade to the fixed software versions indicated in the advisory. For platforms or releases not covered by the fixed software, contact Cisco support for assistance.

Added: Mar 11, 2026, 5:28 PM
Updated: Mar 11, 2026, 5:28 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
0.6
exploitability
3.5
remediation
7.9
relevance
3.8
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.