Source: BleepingComputer
Author: Sergiu Gatlan
URL: https://www.bleepingcomputer.com/news/security/cisco-warns-of-ios-zero-day-vulnerability-exploited-in-attacks/
ONE SENTENCE SUMMARY:
Cisco issued security updates for a critical zero-day vulnerability in IOS and IOS XE Software, urging immediate upgrades to prevent exploitation.
MAIN POINTS:
- Affected products include Cisco IOS and IOS XE Software with enabled SNMP.
- Vulnerability, CVE-2025-20352, is due to a stack-based buffer overflow in SNMP.
- Low-privileged remote attackers can exploit it for denial-of-service (DoS).
- High-privileged attackers can achieve root access and full system control.
- Exploitation involves sending a crafted SNMP packet over IPv4/IPv6 networks.
- No existing workarounds; upgrades to patched software are essential.
- Temporary mitigation includes limiting SNMP access to trusted users.
- Cisco also patched 13 other vulnerabilities, including cross-site scripting (XSS).
- Proof-of-concept exploits are available for some vulnerabilities.
- Previous vulnerabilities were fixed, enhancing Wireless LAN Controllers’ security.
TAKEAWAYS:
- Immediate upgrade to patched software is crucial to prevent exploitation.
- Vulnerability involves severe risks like system control and DoS conditions.
- Limiting SNMP access temporarily mitigates risk until patch application.
- Awareness of other patched vulnerabilities can enhance overall security.
- Cisco remains proactive in addressing multiple security threats promptly.