A vulnerability in the Zero Touch Provisioning service of the Cisco SD-WAN Solution could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. An attacker could exploit this vulnerability by sending malicious packets to the affected software for processing. The vulnerability is due to incorrect bounds checks for certain values in packets that are sent to the service of affected software. Cisco has released software updates that address this vulnerability. There are no workarounds that address the vulnerability.”]
Source: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180718-sdwan-dos