Executive Risk Summary
"A vulnerability in Cisco IOS XR 3.4.0 through 3.9.1 allows remote attackers to cause a denial of service (peering reset) via a crafted prefix announcement. This vulnerability can be exploited by sending a malicious BGP update with an unrecognized transitive attribute, such as attribute type code 99."
Anticipated Attack Path
- 1. Reconnaissance: Identify vulnerable Cisco IOS XR devices with BGP enabled
- 2. Exploitation: Send a crafted BGP update with an unrecognized transitive attribute
- 3. Denial of Service: BGP peering session reset
Am I Vulnerable?
- Verify Cisco IOS XR version and BGP configuration
- Monitor BGP peering sessions for unexpected resets
- Apply Cisco-recommended patches or workarounds
Operational Audit Arsenal
Target Type Network Device
Target Asset bgp
Standard Path Cisco IOS XR
Manual Verification Required
This is a non-Windows asset (Cisco). Use the target asset details and official path provided above to verify your current version against the official vendor advisories listed below.
Patch Impact Forecast
Reboot Required Likely
Network connectivity disruption possible during patch application
Internal Work Notes
CVE-2010-3035: Cisco IOS XR BGP vulnerability - potential for denial of service via crafted BGP update
Technical Intelligence & Operational Utilities • Delivered Weekly
Intelligence Sources
Official Advisoryhttp://mailman.nanog.org/pipermail/nanog/2010-August/024837.html
Official Advisoryhttp://osvdb.org/67696
Official Advisoryhttp://secunia.com/advisories/41190
Official Advisoryhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b4411f.shtml
Official Advisoryhttp://www.securitytracker.com/id?1024371
Official Advisoryhttp://www.vupen.com/english/advisories/2010/2227
Official Advisoryhttps://exchange.xforce.ibmcloud.com/vulnerabilities/61443
Official Advisoryhttp://mailman.nanog.org/pipermail/nanog/2010-August/024837.html
Official Advisoryhttp://osvdb.org/67696
Official Advisoryhttp://secunia.com/advisories/41190
Official Advisoryhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b4411f.shtml
Official Advisoryhttp://www.securitytracker.com/id?1024371
Official Advisoryhttp://www.vupen.com/english/advisories/2010/2227
Official Advisoryhttps://exchange.xforce.ibmcloud.com/vulnerabilities/61443
Official Advisoryhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2010-3035
Related Cisco Threats
Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.