CVE-2025-20253

A vulnerability in the IKEv2 feature of Cisco IOS Software, IOS XE Software, Secure Firewall ASA Software, and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to reload, resulting in a DoS condition. This vulnerability is due to the improper processing of IKEv2 packets. An attacker could exploit this vulnerability by sending crafted IKEv2 packets to an affected device. A successful exploit could allow the attacker to cause an infinite loop that exhausts resources and could cause the device to reload.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad en la función IKEv2 del software Cisco IOS, IOS XE, Secure Firewall ASA y Secure FTD podría permitir que un atacante remoto no autenticado reinicie el dispositivo, lo que resulta en una denegación de servicio (DoS). Esta vulnerabilidad se debe al procesamiento incorrecto de paquetes IKEv2. Un atacante podría explotar esta vulnerabilidad enviando paquetes IKEv2 manipulados a un dispositivo afectado. Una explotación exitosa podría permitir al atacante provocar un bucle infinito que agote los recursos y provoque la recarga del dispositivo.

14 Aug 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-14 17:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-20253

Mitre link : CVE-2025-20253

CVE.ORG link : CVE-2025-20253


JSON object : View

Products Affected

No product.

CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')