CVE-2017-6729

high
Published 2017-07-10 ยท Modified 2026-05-13
CVSS v3
7.5
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
7.5

Description

A vulnerability in the Border Gateway Protocol (BGP) processing functionality of the Cisco StarOS operating system for Cisco ASR 5000 Series Routers and Cisco Virtualized Packet Core (VPC) Software could allow an unauthenticated, remote attacker to cause the BGP process on an affected system to reload, resulting in a denial of service (DoS) condition. This vulnerability affects the following products if they are running the Cisco StarOS operating system and BGP is enabled for the system: Cisco ASR 5000 Series Routers and Cisco Virtualized Packet Core Software. More Information: CSCvc44968. Known Affected Releases: 16.4.1 19.1.0 21.1.0 21.1.M0.65824. Known Fixed Releases: 21.3.A0.65902 21.2.A0.65905 21.1.b0.66164 21.1.V0.66014 21.1.R0.65898 21.1.M0.65894 21.1.0.66030 21.1.0.

Predictions

Exploit likelihood
83%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

Application impact

VendorProductVersionsFixed
cisco ciscoasr_5000_software16.4.1
cisco ciscoasr_5000_software16.5.0
cisco ciscoasr_5000_software16.5.2
cisco ciscoasr_5000_software17.2.0
cisco ciscoasr_5000_software17.2.0.59184
cisco ciscoasr_5000_software17.3.0
cisco ciscoasr_5000_software17.3.1
cisco ciscoasr_5000_software17.3.9.62033
cisco ciscoasr_5000_software17.3_base
cisco ciscoasr_5000_software17.7.0
cisco ciscoasr_5000_software17.7.5
cisco ciscoasr_5000_software18.0.0
cisco ciscoasr_5000_software18.0.0.57828
cisco ciscoasr_5000_software18.0.0.59167
cisco ciscoasr_5000_software18.0.0.59211
cisco ciscoasr_5000_software18.0.l0.59219
cisco ciscoasr_5000_software18.1.0
cisco ciscoasr_5000_software18.1.0.59776
cisco ciscoasr_5000_software18.1.0.59780
cisco ciscoasr_5000_software18.1_base
cisco ciscoasr_5000_software18.3.0
cisco ciscoasr_5000_software18.3_base
cisco ciscoasr_5000_software18.4.0
cisco ciscoasr_5000_software19.0.1
cisco ciscoasr_5000_software19.0.m0.60737
cisco ciscoasr_5000_software19.0.m0.60828
cisco ciscoasr_5000_software19.0.m0.61045
cisco ciscoasr_5000_software19.1.0
cisco ciscoasr_5000_software19.1.0.61559
cisco ciscoasr_5000_software19.2.0
cisco ciscoasr_5000_software19.3.0
cisco ciscoasr_5000_software19.6.3
cisco ciscoasr_5000_software19.6_base
cisco ciscoasr_5000_software20.0.0
cisco ciscoasr_5000_software20.0.1.0
cisco ciscoasr_5000_software20.0.1.a0
cisco ciscoasr_5000_software20.0.1.v0
cisco ciscoasr_5000_software20.0.2.3
cisco ciscoasr_5000_software20.0.2.3.65026
cisco ciscoasr_5000_software20.0.2.v1
cisco ciscoasr_5000_software20.0.m0.62842
cisco ciscoasr_5000_software20.0.m0.63229
cisco ciscoasr_5000_software20.0.v0
cisco ciscoasr_5000_software20.1.v2
cisco ciscoasr_5000_software20.1_base
cisco ciscoasr_5000_software20.2.12
cisco ciscoasr_5000_software20.2_base
cisco ciscoasr_5000_software21.0.0
cisco ciscoasr_5000_software21.0.v1
cisco ciscoasr_5000_software21.0_base
cisco ciscoasr_5000_software21.0_m0.64246
cisco ciscoasr_5000_software21.0_m0.64702

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.