A high-severity flaw in Cisco s IOS XR software could allow unauthenticated, remote attackers to cripple Cisco Aggregation Services Routers (ASR) The flaw (CVE-2020-26070) ranks 8.6 out of 10 on the CVSS scale. An attacker could exploit the flaw by sending specific streams of Layer 2 or Layer 3 data units to an affected device, ultimately exhausting its buffer resources and crashing the device. The flaw stems from an issue with the ingress packet processing function of Cisco’s OS.
Source: https://threatpost.com/high-severity-cisco-dos-flaw-asr-routers/161115/

