Cisco fixed a vulnerability in IOE XE software that was introduced due to changes to its implementation of the BGP over an Ethernet VPN. The vulnerability in the IOS XE, tracked as CVE-2017-12319, could be exploited remotely by an unauthenticated attacker to cause a DoS condition. The flaw is linked is to a change in the implementation of BGP MPLS-based Ethernet VPN(RFC 7432) The vulnerability could be triggered when the router receives a crafted BGP message from a peer on an existing BGP session.”]
Source: https://securityaffairs.co/wordpress/65243/security/cisco-ioe-xe-flaw.html

