CVE-2024-20304
A vulnerability in the multicast traceroute version 2 (Mtrace2) feature of Cisco IOS XR Software could allow an unauthenticated, remote attacker to exhaust the UDP packet memory of an affected device. This vulnerability exists because the Mtrace2 code does not properly handle packet memory. An attacker could exploit this vulnerability by sending crafted packets to an affected device. A successful exploit could allow the attacker to exhaust the incoming UDP packet memory. The affected device would not be able to process higher-level UDP-based protocols packets, possibly causing a denial of service (DoS) condition. Note: This vulnerability can be exploited using IPv4 or IPv6.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.6
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
- EPSS probability
- 0.60%
- CWE
- CWE-401
- Published
- 2024-09-11
- Last modified
- 2026-03-13
Affected products
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
- Cisco Cisco IOS XR Software
Weakness type
Related vulnerabilities
- CVE-2026-3650 — Grassroots DICOM Missing release of memory after effective lifetime
- CVE-2025-61974 — BIG-IP SSL/TLS vulnerability
- CVE-2025-30658 — Junos OS: SRX Series: On devices with Anti-Virus enabled, malicious server responses will cause memory to leak ultimately causing forwarding to stop
- CVE-2025-21599 — Junos OS Evolved: Receipt of specifically malformed IPv6 packets causes kernel memory exhaustion leading to Denial of Service
- CVE-2025-21091 — BIG-IP SNMP vulnerability
- CVE-2025-14027 — Rockwell Automation Recommends Upgrading From 1756-RM2 XT To 1756-RM3 XT
- CVE-2024-39549 — Junos OS and Junos OS Evolved: Receipt of malformed BGP path attributes leads to a memory leak
- CVE-2026-20012 — A vulnerability in the Internet Key Exchange version 2 (IKEv2) feature of Cisco IOS Software, Cisco IOS XE Software, Cis