# CVE-2019-1869

## Summary

- **CVE ID:** CVE-2019-1869
- **Severity:** HIGH
- **CVSS Score:** 8.6 (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H)
- **CWE:** CWE-824
- **Published:** Jun 20, 2019
- **Last Modified:** Mar 14, 2026

## Description

A vulnerability in the internal packet-processing functionality of the Cisco StarOS operating system running on virtual platforms could allow an unauthenticated, remote attacker to cause an affected device to stop processing traffic, resulting in a denial of service (DoS) condition. The vulnerability is due to a logic error that may occur under specific traffic conditions. An attacker could exploit this vulnerability by sending a series of crafted packets to an affected device. A successful exploit could allow the attacker to prevent the targeted service interface from receiving any traffic, which would lead to a DoS condition on the affected interface. The device may have to be manually reloaded to recover from exploitation of this vulnerability.

## Affected Products

- Cisco — Cisco ASR 5000 Series Software (unspecified)

## References

- [CNA](https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190619-staros-asr-dos)
- [CNA](http://www.securityfocus.com/bid/108853)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 1.06%
- **EPSS Percentile:** 77.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._