Cross Platform Release Notes for Cisco IOS Release 15.7(3)M
These release notes support Cisco IOS Release 15.7(3)M and describe new features and related documents.
Cisco IOS Release 15.7(3)M provides the latest innovations for the world’s most demanding networks and is designed to provide a unified network architecture that is stable, reliable, and secure. New features are fully integrated with extensive capabilities already available in Cisco IOS software to provide solutions for enterprise, service provider, and smart grid.
System Requirements
This section describes the system requirements for Cisco IOS Release 15.7(3)M and includes the following sections:
Supported Hardware Platforms
Cisco IOS Release 15.7(3)M supports platforms within the following Cisco series:
- Cisco 800 series routers
- Cisco 1900 series integrated services routers
- Cisco 2900 series integrated services routers
- Cisco 3900 series integrated services routers
- Cisco Connected Grid Router (CGR) 2000 series (CGR 2010)
- Cisco Analog Voice Gateways (VG202XM and VG204XM)
- Cisco High Density Analog Voice Gateways (VG350)
Determining Your Software Version
To determine the version of Cisco IOS software that is currently running on your Cisco network device, log in to the device and enter the show version user EXEC command:
Router> show version
Cisco Internetwork Operating System Software IOS (tm)
15.7 Software (c880data-universalk9-mz.), Version 15.7(3)M, RELEASE SOFTWARE
Upgrading to a new Release
MIBS
Field Notices and Software-Related Tools and Information
Troubleshooting
Upgrading to a New Release
For information about selecting a new Cisco IOS software release, see How to Choose a Cisco IOS Software Release at the following URL:
http://www.cisco.com/en/US/products/sw/iosswrel/ps1834/products_tech_note09186a00800fb9d9.shtml
For information about updating or upgrading Cisco IOS software, see How to Update/Upgrade Cisco IOS Software at the following URL:
Platform-specific documents may also provide information about upgrading to a new software release:
-
Cisco 800 Series Industrial Integrated Services Routers: http://www-author.cisco.com/c/en/us/support/routers/800-series-industrial-routers/products-installation-guides-list.html
-
Cisco 800 series routers:http://www.cisco.com/en/US/products/hw/routers/ps380/prod_installation_guides_list.html
-
Cisco IR 800 series routers: https://www.cisco.com/c/en/us/support/routers/800-series-industrial-routers/tsd-products-support-series-home.html
-
Cisco 1000 CGR series routers http://www.cisco.com/c/en/us/support/routers/1000-series-connected-grid-routers/products-installation-and-configuration-guides-list.html
-
Cisco 2000 CGR series routers:http://www.cisco.com/en/US/products/ps10977/prod_installation_guides_list.html
-
Cisco 1900 series routers: http://www.cisco.com/en/US/docs/routers/access/1900/hardware/installation/guide/1900_HIG.html
-
Cisco 2900 and 3900 series routers: http://www.cisco.com/en/US/docs/routers/access/2900/hardware/installation/guide/Hardware_Installation_Guide.html
-
Cisco 5900 Embedded Services Routers: http://www.cisco.com/c/en/us/support/routers/5900-series-embedded-services-routers/products-installation-guides-list.html
-
Cisco VG202XM and Cisco VG204XM Voice Gateways: http://www.cisco.com/en/US/docs/routers/access/vg202_vg204/hardware/vg2_vg4hw.html
-
Cisco VG350 Voice Gateway: http://www.cisco.com/en/US/docs/routers/access/vg350/hardware/installation/guide/vg350_hig.html
For instructions on ordering a Cisco IOS upgrade, see the document at the following location: http://www.cisco.com/warp/public/cc/pd/iosw/prodlit/957_pp.html.
To choose a new Cisco IOS software release by comparing feature support or memory requirements, use Cisco Feature Navigator. Cisco Feature Navigator is a web-based tool that enables you to determine which Cisco IOS software images support a specific set of features and which features are supported in a specific Cisco IOS image. You can search by feature or by feature set (software image). Under the release section, you can compare Cisco IOS software releases side by side to display both the features unique to each software release and the features that the releases have in common.
To choose a new Cisco IOS software release based on information about defects that affect that software, use Bug Toolkit at the following URL: http://www.cisco.com/cgi-bin/Support/Bugtool/launch_bugtool.pl.
MIBs
To locate and download MIBs for selected platforms, Cisco IOS releases, and feature sets, use Cisco MIB Locator found at the following URL:
http://tools.cisco.com/ITDIT/MIBS/servlet/index
If Cisco MIB Locator does not support the MIB information that you need, you can also obtain a list of supported MIBs and download MIBs from the Cisco MIBs page at the following URL:
http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml
To access Cisco MIB Locator, you must have an account on Cisco.com. If you have forgotten or lost your account information, send a blank e-mail to cco-locksmith@cisco.com. An automatic check will verify that your e-mail address is registered with Cisco.com. If the check is successful, account details with a new random password will be e-mailed to you. Qualified users can establish an account on Cisco.com by following the directions found at this URL:
Field Notices and Software-Related Tools and Information
We recommend that you view the field notices for this release to see if your software or hardware platforms are affected. You can find Field Notices at http://www.cisco.com/en/US/support/tsd_products_field_notice_summary.html.
Visit the Download Software page on Cisco.com to subscribe to Cisco software notifications, locate MIBs, access the Software Advisor, and find other Cisco software-related information and tools. Access the Download Software page at http://www.cisco.com/cisco/software/navigator.html?a=a&i=rpm.
Troubleshooting
The following documents and websites provide assistance with troubleshooting your Cisco hardware and software:
- Troubleshoot and Alerts Product or Technology Selection Page
http://www.cisco.com/cisco/web/psa/troubleshoot.html?mode=prod&level0=268437899
- Cisco 800 Series Routers Troubleshooting Guides
http://www.cisco.com/en/US/products/hw/routers/ps380/prod_troubleshooting_guides_list.html
- Cisco 1240 and 1120 Connected Grid Router Installation Guides
- Cisco 1600 Series Routers Hardware Troubleshooting Index Page
http://www.cisco.com/en/US/products/hw/routers/ps214/products_tech_note09186a008012fb88.shtml
- Troubleshooting Cisco 3900 Series, 2900 Series, and 1900 Series ISRs
http://www.cisco.com/en/US/docs/routers/access/2900/hardware/installation/guide/Trouble.html
- Cisco Unified Communications 500 Series Install and Upgrade Tech Notes
Cisco Error Message Decoder
http://www.cisco.com/pcgi-bin/Support/Errordecoder/index.cgi
- Cisco Support Community
Feature Support
Cisco IOS software is packaged in feature sets that consist of software images that support specific platforms. The feature sets available for a specific platform depend on which Cisco IOS software images are included in a release. Each feature set contains specific Cisco IOS features.
Caution |
Cisco IOS images with strong encryption (including, but not limited to 168-bit [3DES] data encryption feature sets) are subject to U.S. government export controls and have limited distribution. Strong encryption images to be installed outside the United States are likely to require an export license. Customer orders may be denied or subject to delay because of U.S. government regulations. When applicable, the purchaser/user must obtain local import and use authorizations for all encryption strengths. Please contact your sales representative or distributor for more information, or send an e-mail to export@cisco.com. |
Cisco Feature Navigator
Feature-to-image mapping is available through Cisco Feature Navigator. Cisco Feature Navigator is a web-based tool that enables you to determine which Cisco IOS software images support a specific set of features and which features are supported in a specific Cisco IOS image. You can search by feature or by feature set (software image). You can compare Cisco IOS software releases side-by-side to display both the features unique to each software release and the features that the releases have in common.
Cisco Feature Navigator is updated regularly when major Cisco IOS software releases and technology releases occur. For the most current information, go to the Cisco Feature Navigator home page at the following URL:
For help with Cisco Feature Navigator, see the help information at the following URL:
http://www.cisco.com/web/applicat/CFNTOOLS/Help_Docs/help/cfn_support.html
Determining the Software Images (Feature Sets) That Support a Specific Feature
To determine which software images (feature sets) in a Cisco IOS release support a specific feature, go to the Cisco Feature Navigator home page and perform the following steps.
SUMMARY STEPS
- From the Cisco Feature Navigator home page, click Research Features.
- Select your software type or leave the field as “All”.
- To find a feature, you can search by either Feature or Technology (select the appropriate button). If you select Search by Feature, you can further filter your search by using the Filter By text box.
- Choose a feature from the Available Features text box, and click the Add button to add the feature to the Selected Features text box.
- Click Continue when you are finished choosing features.
- In the Release/Platform Tree area, select either your release (from the Train-Release list) or your platform (from the Platform list).
- The “Search Result” table will list all the software images (feature sets) that support the features that you chose.
DETAILED STEPS
Step 1 |
From the Cisco Feature Navigator home page, click Research Features. |
||
Step 2 |
Select your software type or leave the field as “All”. |
||
Step 3 |
To find a feature, you can search by either Feature or Technology (select the appropriate button). If you select Search by Feature, you can further filter your search by using the Filter By text box. |
||
Step 4 |
Choose a feature from the Available Features text box, and click the Add button to add the feature to the Selected Features text box.
Repeat this step to add features. A maximum of 20 features can be chosen for a single search. |
||
Step 5 |
Click Continue when you are finished choosing features. |
||
Step 6 |
In the Release/Platform Tree area, select either your release (from the Train-Release list) or your platform (from the Platform list). |
||
Step 7 |
The “Search Result” table will list all the software images (feature sets) that support the features that you chose.
|
Determining the Features Supported in a Specific Software Image (Feature Set)
To determine which features are supported in a specific software image (feature set), go to the Cisco Feature Navigator home page and perform the following steps.
SUMMARY STEPS
- From the Cisco Feature Navigator home page, click Research Software.
- Select your software type from the drop-down list and chose the Release button in the “Search By” area.
- From the Major Release drop-down list, chose the appropriate major release.
- From the Release drop-down list, choose the appropriate maintenance release.
- From the Platform drop-down list, choose the appropriate hardware platform.
- From the Feature Set drop-down list, choose the appropriate feature set. The Image Details area will provide details on the specific image. The Available Features area will list all the features that are supported by the feature set (software image) that you chose.
DETAILED STEPS
Step 1 |
From the Cisco Feature Navigator home page, click Research Software. |
||
Step 2 |
Select your software type from the drop-down list and chose the Release button in the “Search By” area. |
||
Step 3 |
From the Major Release drop-down list, chose the appropriate major release. |
||
Step 4 |
From the Release drop-down list, choose the appropriate maintenance release. |
||
Step 5 |
From the Platform drop-down list, choose the appropriate hardware platform. |
||
Step 6 |
From the Feature Set drop-down list, choose the appropriate feature set. The Image Details area will provide details on the specific image. The Available Features area will list all the features that are supported by the feature set (software image) that you chose.
|
Memory Recommendations
To determine memory recommendations for software images (feature sets) in your Cisco IOS release, go to the Cisco Feature Navigator home page and perform the following steps.
SUMMARY STEPS
- From the Cisco Feature Navigator home page, click Research Software.
- Select your software type from the drop-down list and choose the Release button in the “Search By” area.
- From the Major Release drop-down list, choose the appropriate major release.
- From the Release drop-down list, choose the appropriate maintenance release.
- From the Platform drop-down list, choose the appropriate hardware platform.
- From the Feature Set drop-down list, choose the appropriate feature set.
- The Image Details area will provide details on the specific image including the DRAM and flash memory recommendations for each image. The Available Features area will list all the features that are supported by the feature set (software image) that you chose.
DETAILED STEPS
Step 1 |
From the Cisco Feature Navigator home page, click Research Software. |
Step 2 |
Select your software type from the drop-down list and choose the Release button in the “Search By” area. |
Step 3 |
From the Major Release drop-down list, choose the appropriate major release. |
Step 4 |
From the Release drop-down list, choose the appropriate maintenance release. |
Step 5 |
From the Platform drop-down list, choose the appropriate hardware platform. |
Step 6 |
From the Feature Set drop-down list, choose the appropriate feature set. |
Step 7 |
The Image Details area will provide details on the specific image including the DRAM and flash memory recommendations for each image. The Available Features area will list all the features that are supported by the feature set (software image) that you chose. |
Features and Important Notes
These release notes describe the following topics:
Important Notes
-
The H.323 functionality is not supported from Cisco IOS 15.7(3)M onwards. This might potentially have an impact on the NAT H.323 ALG functionality. Note that Cisco technical support will not be available for any NAT H.323 ALG issues related to this change. If you are impacted by this change, we recommend that you consider Session Initiation Protocol (SIP) as an alternative solution.
New and Changed Information
This section lists the new hardware and software features supported by Cisco IOS Release 15.3(3)M and contains the following subsections:
New Hardware Features Supported in Cisco IOS Release 15.7(3)M2
There are no new hardware features in Cisco IOS Release 15.7(3)M2.
New Software Features Supported in Cisco IOS Release 15.7(3)M2
CWMP support for LTE for ISR-G2
For detailed information, see the following Cisco document:
HA for CGR-1k
For detailed information, see the following Cisco documents:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M2-Release-Note.html
https://www.cisco.com/c/en/us/td/docs/solutions/GGSG-Engineering/15-7-3M/15-7-3M2-Release-Note.html
New Hardware Features Supported in Cisco IOS Release 15.7(3)M1
There are no new hardware features in Cisco IOS Release 15.7(3)M1.
New Software Features Supported in Cisco IOS Release 15.7(3)M1
AutoSim and Firmware Support
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Bidirectional Forward Detection Support on the IR8X9
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Configuration Register Emulation
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Guest OS File System Corruption Detection and Recovery
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Guest OS Persistent Logging through Reload
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Logrotate of IR8x9 Guest-OS logs
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Plug and Play (PnP) support over 4G/Ethernet
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
Session Initiation Protocol Triggered VPN
For detailed information, see the following Cisco document:
VDS Serviceability
For detailed information, see the following Cisco document:
https://www.cisco.com/c/en/us/td/docs/routers/access/800/829/15-7-3M1-Release-Note.html
New Hardware Features Supported in Cisco IOS Release 15.7(3)M
There are no new hardware features in Cisco IOS Release 15.7(3)M.
New Software Features Supported in Cisco IOS Release 15.7(3)M
500 Mbps license
The 5921 supports five perpetual performance level feature licenses and there is a requirement to support Level6 (500Mbps) license as well. For more information, see Release Notes for Cisco IOS Release 15.7(3)M on the 5900 Embedded Services Routers.
DTP Support for C800
Dynamic Trunking Protocol (DTP) is used to negotiate trunk formation between two Cisco devices. Effective with Cisco IOS Release 15.7(3)M, Dynamic Trunking Protocol is supported on layer switch ports on Cisco Integrated Services Routers Generation 2 modular routers with EHWIC-4ESG and EHWIC-8ESG and on fixed Cisco 800 Series routers. DTP is a Cisco proprietary protocol and is enabled by default. The default switchport mode when this feature is configured is switchport mode dynamic auto, else the switchport mode is switchport mode access, which is mode prior to Cisco IOS Release 15.7(3)M.
IOx Radius/TACACS+ authentication
This feature allows for enabling the AAA login to IOx applications. For more information, see Release Notes for Cisco IR800 Industrial Integrated Services Routers and Cisco 1000 Series Connected Grid Routers.
IOx IPv6 Networking Option
IOx interfaces on IOS now support IPv6 addressing. For more information, see Release Notes for Cisco IR800 Industrial Integrated Services Routers and Cisco 1000 Series Connected Grid Routers.
Support for New IR807 SKU
Support has been added for a new router in the IR800 series. The IR807 is a small-form factor, low cost fixed 4G LTE ruggedized router using WP75xx/WP76xx series modems. For more information, see Release Notes for Cisco IR800 Industrial Integrated Services Routers and Cisco 1000 Series Connected Grid Routers.
Bugs for Cisco IOS Release 15.7(3)M
Open and Resolved Bugs
The open and resolved bugs for this release are accessible through the Cisco Bug Search Tool. This web-based tool provides you with access to the Cisco bug tracking system, which maintains information about bugs and vulnerabilities in this product and other Cisco hardware and software products.
Within the Cisco Bug Search Tool, each bug is given a unique identifier (ID) with a pattern of CSCxxNNNNN, where x is any letter (a-z) and N is any number (0-9). The bug IDs are frequently referenced in Cisco documentation, such as Security Advisories, Field Notices and other Cisco support documents. Technical Assistance Center (TAC) engineers or other Cisco staff can also provide you with the ID for a specific bug.
You can save searches that you perform frequently. You can also bookmark the URL for a search and email the URL for those search results.
Note |
If the defect that you have requested cannot be displayed, this may be due to one or more of the following reasons: the defect number does not exist, the defect does not have a customer-visible description yet, or the defect has been marked Cisco Confidential. |
Using the Bug Search Tool
The Cisco Bug Search Tool enables you to filter the bugs so that you only see those in which you are interested. In addition to being able to search for a specific bug ID, or for all bugs in a product and release, you can filter the open and/or resolved bugs by one or more of the following criteria:
- Last modified date
- Status, such as fixed (resolved) or open
- Severity
- Support cases
For more information about how to use the Cisco Bug Search Tool, including how to set email alerts for bugs and to save bugs and searches, see Bug Search Tool Help & FAQ.
Note |
You must have a Cisco.com account to log in and access the Cisco Bug Search Tool. if you do not have one, you can register for an account. |
To use the Cisco Bug Search Tool:
- In your browser, navigate to the Cisco Bug Search Tool.
- If you are redirected to a Log In page, enter your registered Cisco.com username and password and then, click Log In.
- To search for a specific bug, enter the bug ID in the Search For field and press Enter.
- To search for bugs related to a
specific software release, do the following:
- In the Product field, choose Series/Model from the drop-down list and then enter the product name in the text field. If you begin to type the product name, the Cisco Bug Search Tool provides you with a drop-down list of the top ten matches. If you do not see this product listed, continue typing to narrow the search results.
- In the Releases field, enter the release for which you want to see bugs.
The Cisco Bug Search Tool displays a preview of the results of your search below your search criteria. You can mouse over bugs to see more content about a specific bug.
To see more content about a specific bug, you can do the following:
-
Mouse over a bug in the preview to display a pop-up with more information about that bug.
-
Click on the hyperlinked bug headline to open a page with the detailed bug information.
-
To restrict the results of a search, choose from one or more of the following filters:
Filter
Description
Modified Date
A predefined date range, such as last week or last six months.
Status
A specific type of bug, such as open or fixed.
Severity
The bug severity level as defined by Cisco. For definitions of the bug severity levels, see Bug Search Tool Help & FAQ
Rating
The rating assigned to the bug by users of the Cisco Bug Search Tool.
Support Cases
Whether a support case has been opened or not.
Your search results update when you choose a filter.
Resolved Bugs—Cisco IOS Release 15.7(3)M9
Caveat ID Number |
Description |
---|---|
Crash in SNMP engine process while polling chassis id in lldp |
|
Cisco IOS and IOS XE Software IKEv2 AutoReconnect feature denial of service vulnerability |
|
Cisco IOS and IOS XE Software TrustSec CLI Parser denial of service vulnerability |
Resolved Bugs—Cisco IOS Release 15.7(3)M8
Caveat ID Number |
Description |
---|---|
IP host Port lookup is failed in case of Reverse SSH |
|
Mishandling of dsmpSession pointer causes a crash |
|
VoIP Dial-peer up/down traps sent to SNMP server every interval |
|
Call Rerouting functionality not working on 16.6/16.12/17.1 IOS-XE trains |
|
AP 860VAE-W GUI does not reflect changes in WLAN Configuration |
|
RTP port leak |
|
CUBE accepts SDP with invalid port number |
|
Empty VoiceXML Property Value breaks Audio even when validating syntax success |
|
Traceback: Unexpected reload after IOS Zone-based Firewall configuration |
|
HSRP group id 11 cannot create virtual MAC |
|
ISR Gen-2 fails to reset ROC on receiving new SDP parameters in SRTP hold/resume after 15 minutes |
Resolved Bugs—Cisco IOS Release 15.7(3)M7
Caveat ID Number |
Description |
---|---|
Evaluate NTP February 2018 Vulnerabilities. |
|
DTMF renegotiation from RFC2833 to OOB does not work |
|
IOS-XE DHCP server creates option 125 with invalid format |
|
SDP version was incremented due to misplace of PT 100 |
|
x509 SSH authentication incorrect UPN value selected |
|
Reflexive ACL does not work on PATed packets in specific situation on IOS 15.7(3)M4a. |
|
CUBE is not able to transfer the call |
|
RTP/SRTP interworking fails when 180 and 183 have different to-tag |
|
491 returned on midcall INVITE when peer leg is not pending a request |
|
PKI CLI - no warning that rsakeypair name starting from 0 (zero) is not working for cert regenerate |
|
CLI parser unexpectedly interprets backslash with octal numbers |
|
IPV4 Multicast packets are unexpectedly replicated to underlay interface of mGRE tunnels |
|
CUBE does not accept channel ID for MRCPv2 |
|
[C891F/15.9(3)M1] DMVPN after removing IPSec, packet drops continues at tunnel int |
|
Evaluation of CVE-2020-11868 for IOS |
|
"Error in encoded data" is shown by ip nat command |
|
Memory leak in STUN/MallocLite on ISRG2 CUBE/SIP GW routers leading to memory exhaustion over time. |
|
Deleting a Voice Port on CUCM Shuts Down Additional Voice Ports on MGCP Gateway |
|
SRTP key not updated to DSP on re-INVITE |
|
I/O Memory Leak With Tunnel Config |
|
Crash observed while trying to relay the digit to opposite leg |
|
Unexpected Reload after running 'show voice dsp' command while an ISDN Call Disconnects |
|
Unexpected reload during a SIP call |
Open Bugs—Cisco IOS Release 15.7(3)M7
Caveat ID Number |
Description |
---|---|
IOS allows RC4-MD5 and RC4-SHA1 SSL ciphers to be negotiated by default |
|
IR809/IR829 - Possible side-channel style information disclosure vuln |
|
linkUp traps not generated when BRI up |
|
VRF aware reverse DNS lookup not working |
|
Whenever Acct-terminate-cause is 24 the duplicate set of traffic counts is sent as 0. |
|
IOS router crashes with Crypto PAK's unavailable error from crypto engine. |
|
WCCP ACL programming issue - denied traffic is redirected |
|
AP 860VAE-W GUI doesn't reflect changes in WLAN Configuration. |
|
After upgade to 15.9-3M1, GOS is using secondary IP on svcbr_0 for NAT |
|
Unexpected Reload while processing calls using H323 |
Resolved Bugs—Cisco IOS Release 15.7(3)M6
Caveat ID Number |
Description |
---|---|
config t-> "?" gives an unaligned output |
|
traceback: PM-4-NOSB: No PM subblock found for interface Gi0/0 |
|
Prefixes are stuck indefinitely in the BGP pending-prefixes list |
|
Embedded Packet Capture exported fails when buffer is full |
|
IPV6 prefix delegation issue in 881 router |
|
CGR1K Access-class ipv4 refuse ipv6 link-local address ssh connection via ethernet or wifi interface |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
C897VAW-E-K9 // 15.7(3)M1 // Unable to disable lldp |
|
Observing Memory leak at Sip MPA |
|
CUBE changing the payload for content sharing packets, though it negotiate correctly |
|
TCLSH: smtp_lib.tcl broken VRF support |
|
Crash at Process = SCCP Auto Config |
|
MGCP GW doesn't reset SSRC/ROC on receiving MDCX with new IP/port/SDP parameter for SRTP call. |
|
BGP labels not propagated |
|
default-information originate configuration does not advertise default route |
|
VRF routes disappeared after reload |
|
SSH: host_key->name is not null after reload which prevents SSH from starting up |
|
IR807G-LTE-GA-K9 is not recognized as Cisco genuine product |
|
CGR1000 - FE LEDs and SVI incorrect behavior |
|
SIP Profiles not properly modifying 400 responses |
|
6800 cannot send out DBD packets after switchover with aggresive timer |
|
cat9300 hang and generate memory error when applying "privilege interface level 15 ospfv3" |
|
VXLAN EVPN BGP NEXTHOP not correctly changed with Route-map |
|
Cisco IOS and Cisco IOS XE Software Web UI Cross-Site Request Forgery Vulnerability |
|
Packet drop in vdsl controller pppoe stuck in PADISNT |
|
freed rpi_parent is hit when deleting parent route by route update event |
|
Router reload due to command "show control-plane host open-ports" |
|
Adjacency SIDs not detected in mpls traffic-eng topology (interop issue) |
|
DMVPN with shared ipsec protection profile on ipv4 and ipv6 tunnel, only one tunnel comes up |
|
KPML dialing fails after CSCvq20936 commit |
|
Unregistered supplicant can ping every re-authentication timer with mab when Spanning is disabled |
|
Router crashes due to Segmentation Fault when 'ccb' gives a NULL Pointer |
|
Subinterface reporting more traffic than physical interface |
|
C3900-SPE250/K9 // memory leak in voice gateway |
|
Device Becomes Unresponsive when Running "crypto key generate rsa" |
|
Cat4K sends RA with incorrect packet format |
|
IOS Firewall crash with video call |
|
SNMP cannot poll LLDP neighbors from the device |
|
XSVC SIP trunks are shown as DOWN |
|
ISR c800 is not giving DHCP address when port authentication failover from MAB to guest-vlan |
|
Cisco Wave 1 AP Software reloads unexpectedly when configuring a long SNMP-server community string |
|
PoE stops working after upgrade on C881K9 |
|
CUBE sends _sips.tcp SRV query only when scheme sips is configured. Needs to be related to TLS. |
|
EIGRP hello packets sourced from the tunnel ip address even the EIGRP is not enabled on interface |
|
IPSEC stateful redundancy - show crypto ipsec sa shows PFS (Y/N): N, while active shows PFS (Y/N): Y |
|
MRCP/ASR completetimeout voicexml properties in form element is not being sent in RECOGNIZE |
|
Router crashed on removing trustpoint on dspfarm profile |
Open Bugs—Cisco IOS Release 15.7(3)M6
Caveat ID Number |
Description |
---|---|
DTMF renegotiation from RFC2833 to OOB does not work |
|
CUBE fails to send outgoing SUBSCRIBE if egress dial-peer has "session server-group" configured |
|
CUBE - SDP version increment behaviour creates cypto interworking issues |
|
linkUp traps not generated when BRI up |
|
SDP version was incremented due to misplace of PT 100 |
|
SIP phone paging party hears own voice |
|
Block overrun within IO memory |
|
Block Overrun after NHRP-3-PAKERROR syslog message |
|
MWI does not work for all shared lines |
|
491 returned on midcall INVITE when peer leg is not pending a request |
Resolved Bugs—Cisco IOS Release 15.7(3)M5
Caveat ID Number |
Description |
---|---|
Different Interface Error Counter Results On Two Interfaces |
|
Rework for CSCun57148 - High CPU in FNF Cache Ager P |
|
Memory corruption due to DHCP |
|
crash after no ipv4 multicast multitopology command |
|
High CPU Due to "Async write proc" During Hung Filesystem Operation |
|
IP TUNNELS: Overlapping Loopback Interface Causes Incorrect Forwarding Decision with AppNav and PfR |
|
OSPFv3 AUTH breaks IPv6 traffic intermittently |
|
Callback server callback only once because of "callback to X already started" |
|
Memory leak Crypto IKEv2 at ikev2_ios_psh_set_route_info |
|
Phase1 comes up and DPDs being exchanged even if the tunnel interface is shut d |
|
SSL handshake failure when validating certification with name-constraints |
|
C881G-4G: Normal buffer leak with: pak_copy_network_start_particlized - cont. |
|
External Interface on the PfR MC stuck in the shutdown state |
|
SNMP SMALL CHUN memory leak seen on KS while getvpn scale testing 300 group 4800 gm |
|
config revert Rollback visible in console and locks up config from VTY |
|
Y2.02K: self-signed cert expires after 31 Dec 2019, cannot be created after 1 Jan 2020 |
|
Memory leak VOIP *MallocLite* |
|
Standby switch crashes when flow-exporter destination configured with Hostname |
|
High CPU due to Alignment Corrections - SMEF & IWAN |
|
Crash in XDR process: "fib_rp_table_broker_encode_buf.size <= FIB_RP_TABLE_BROKER_ENC_BUF_SZ" |
|
CNS Exec process crash @ cns_get_config_from_server |
|
CUBE: FPI Hung Sessions and Provisioning Failures observed in Standby CUBE |
|
Rekey Timer are same for both the Server and Client |
|
BGP Traceback/Crash seen with 20k IPv4 BGP scale after reload/clearing bgp |
|
LLDP pkt drop on intf <Intf> when disabling lldp on this interface |
|
Router fails to reserve necessary ports for VPN traffic (UDP 500 & 4500) for ISAKMP |
|
ISDN PRI calls getting dropped with cause 47 because of bad interaction between CDAPI and TSP layers |
|
IPSEC in DOWN-NEGOTIATING on HSRP Standby router with local-address config |
|
on IR829 modem MC7304 - Modem not reading the IMSI intermittently until power cycle |
|
"clear crypto sa vrf MyVrf" triggers crash after updating pre-shared-keys |
|
CME/BE4K: Corrupted config file for Auto Registered IP Phones after reload |
|
Crash at CCB of RTPSPI at the moment of creating a disconnect timer |
|
BGP multipath feature drops a path from list after BGP update event |
|
CUBE: Crash observed at rbuf_ooh_handler |
|
PnP discovery is stopped with no user intervention in non-vlan 1 scenario |
|
Bulk-sync failure due to bgp router-id interface Loopback0 |
|
IP change on dialer-int does not trigger a correct "local cryto entpt"in DMVPN |
|
BGP update not properly processed by inbound route-map |
|
Redistributed metric is not be applied if it is in narrow-style |
|
CUBE Crashes in SRTP-RTP call flows because of CSCvf93129 commit ( Needs rework) |
|
Certificate map does not work always with UPN in SAN field |
|
Cube crash with %SDP-3-SDP_PTR_ERROR |
|
Crash when making voice call via sip trunk |
|
CUBE doesn't forward INVITE with "midcal-signalling passthru media-change" during a video escalation |
|
After C897 is reloaded ,routed pseudowire is not passing traffic |
|
RTP/SRTP interworking fails when 18x w/o SDP is before 183 w/SDP |
|
CUBE not doing session refresh, and not accepting the refresher in 200OK for the INVITE. |
|
Crash while processing ISIS updates when DiffServ-TE is enabled |
|
Crash when making an external call |
|
The PC not permitted on ISE can ping once every re-authentication timer with mab authentication. |
|
Layer 2 Neighbors Have No Connectivity Despite Authentication Open Being Configured |
|
bgp dynamic neighbor not up |
|
CUBE strips '+' sign from the called number in the outgoing INVITE. |
|
Tunnel PMTUD not being aged out after PMTUD ager timer expires |
|
FlexVPN with password encryption - keyring aaa LIST password 6 xxxxx encrypted again upon reload |
|
QSIG - SIP - Connected Number Missing leading digit when decoding raw QSIG |
|
Crash closing background connections by form-based Webauth |
|
Alignment error with MACE enabled |
|
PKI "revocation check crl none" does not fallback if CRL not reachable |
|
SIP global binding disappears when the interface to which SIP is bound flaps. |
|
SRST Parallel hunt group fails if first member missing |
|
Tracebacks when login limit exceeds while logging into SSL VPN portal |
|
SCCP Application does not clear failed sockets leading to leak and socket pool exhaustion |
|
Packet drop occurs after acl permit configurations |
|
Call is not getting connected in Forking Re-INVITE scenario |
|
CUBE DNS SRV Query is not performed for PRACK |
|
SNMP querry for local BGP AS "cBgpLocalAS" is failing |
|
Chunk corruption crash when processing packet in CSDB_TCP_LISTEN state |
|
Input Queue Wedge due to cTCP |
|
PKI incorrect fingerprint calulation during CA authentication |
|
CUBE picks incorrect interface for media after receiving c=IN IP4 0.0.0.0 |
|
Analog phones on VG310 play continious BEEP tone approx every 60 secs. |
|
BGP has VxLAN RNH "show bgp l2vpn evpn rnh" but missing entries in "show nve peers" |
|
Deleting one sip-copylist will remove all sip copy-lists from dialpeers |
|
FXS - no busy tone is generated on remote-onhook condition with call pickup scenario |
|
Reverse SSH bringing down RTS on serial interface |
|
Flexible NetFlow Template ID is not getting exported |
|
Transcoder getting invoked for SRTP-SRTP calls. |
|
spurious accesses are seen in show alignment output with BGP |
|
%PERF_MON_ASYNC-3-MEM: Memory cleanup failed - ssrc db cache results in PMI not created on BR |
|
Overlay BGP down when configured "ip nhrp server-only" |
|
Router loses "transport tcp tls v1.0" on reload |
|
"mac-address-table secure sticky <mac-add>" lost when configure "mac-address-table secure maximum" |
|
Tail drops on IPSLA sender when using scaled udp-jitter probes |
|
ISR8xx TCAM limitation |
|
Shut down interface Wlan-GigabitEthernet0 |
|
ESR crashed with Segmentation fault on Process Rate limit load process |
|
Source Filter and Voice RTP Source-Filter in IOS Routers should allow RTP when on Hold |
|
BGP sends malformed EVPN MAC/IP Advertisement Route |
|
VG3x0 - groundstart voice-port configuration removed after reload |
|
Reload when importing certificate from nvram: |
|
MED should be compared if the first AS number in AS-PATH is 2^16, i.e, 65536 |
|
OSPF summary-route (Type 5) redistribute into ospf via 'summary-address' cmd is not install in RIB |
|
Crash during SNMP Configuration, ospfv3_pdb_from_router_info |
|
IPsec SA installation fails with simultaneous negotiations despite fix for CSCve08418 |
|
After receiving 491, cube is not setting the media transcoder flag at SRTP leg |
|
Default-route is not installed in Local PE VRF if there is 0.0.0.0/X route present in routing table |
|
C5915 - NVRAM corrupts during bootup |
|
Crash after Media monitor look up. |
|
Secondary subnets not redistributed from OSPF into BGP |
|
BGP set wrong local preference for routes in RPKI invalid state |
|
ISRG2: SRTP information not passed in Outgoing 183SP's SDP in external call forward scenario |
|
Split DNS not working in case of TCP query coming on WAN interface and destined to LAN interface |
|
Replaces string not passed on CUBE REFER consumption scenario when address-hiding is configured |
|
ISDN memory leak |
|
BGP/ expanded extcommunity regex filter is not working as expected |
|
CUBE router crashed due to memory corruption in subscription control block |
|
CUBE doesn't terminate the call after network failure |
|
CUBE ha crash of standby unit after call hold from video endpoint |
|
RLFA config causing OSPF to ignore backup path addition for NSSA prefix after primary link flap |
|
SIP phone paging party hears own voice on T-train |
|
VG450: SCCP crashing router while shutdown the process |
|
When user cancel Call Forward All from the analog phone, user can't hear the confirmation tone |
Open Bugs—Cisco IOS Release 15.7(3)M5
Caveat ID Number |
Description |
---|---|
Cisco IOS/XE NTP synchronized but clock drifts |
|
Cisco IOS and Cisco IOS XE Software EnergyWise Denial of Service Vulnerabilities |
|
Cisco IR809/IR829 - Possible side-channel style information disclosure vuln |
|
High memory utilization over CENT-MC-0 and CENT-BR-0 processes |
|
3650 mab failover does not work after first failed dot1x authentication |
|
Device-Sensor accounting TLVs not supported in ISR |
|
DTMF renegotiation from RFC2833 to OOB does not work |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
CUBE fails to send outgoing SUBSCRIBE if egress dial-peer has "session server-group" configured |
|
CUBE changing the payload for content sharing packets, though it negotiate correctly |
|
RPHY: RPD reports 66070209 L2TPv3 Connection Error unexpectedly |
|
CUBE - SDP version increment behaviour creates cypto interworking issues |
|
linkUp traps not generated when BRI up |
|
ISDN calls being picked in round robin manner instead of all happening at the same time |
|
SDP version was incremented due to misplace of PT 100 |
|
VRF routes disappeared after reload |
|
HTTP Redirect doesn't work after an upgrade to 15.2.7E |
|
SIP Profiles not properly modifying 400 responses |
|
Static route from VPN |
|
SIP phone paging party hears own voice |
|
Packet drop in vdsl controller pppoe stuck in PADISNT |
|
SNMP OID giving inaccurate/no updates for Cellular and interface OIDs |
|
ESR: TCP performance degradation while using linux driver optimizations |
|
3945, alignment error after run .tcl script |
|
DMVPN with shared ipsec protection profile on ipv4 and ipv6 tunnel, only one tunnel comes up |
|
Memory leak in SIP MPA |
|
Rawsocket over MPLS feature cause system to be unresponsive |
Resolved Bugs—Cisco IOS Release 15.7(3)M4b
Caveat ID Number |
Description |
---|---|
Memory leak @ CCSIP_SPI_CONTR |
|
One-way video after 15 mins/session refresh due to rtcp pli packets drop |
|
Crash with SIP call |
|
IPSec background crash while sending SNMP trap |
|
IPSec-Session count in show crypto eli command reaches maximum limit, causing VPN failure |
|
Memory leak at __be_crypto_acl_lookup_v4_hit_count_handle |
Resolved Bugs—Cisco IOS Release 15.7(3)M4a
Caveat ID Number |
Description |
---|---|
Router crashing after upgrade due to Crypto commands with Block overrun at 284B2160 (red zone 000110DF) error. |
Resolved Bugs—Cisco IOS Release 15.7(3)M4
Caveat ID Number |
Description |
---|---|
IOS PKI: trustpoint doesn't rollover regenerated RSA keys. |
|
Crash seen when peer-group cmds are issued with bmp server configured |
|
Memory leak under LLDP Protocol process |
|
VXML GW hardening changes for ICBC memory corruption issue |
|
Line-by-Line sync verifying failure on command: client test01 server-key 0 Password |
|
IPsec/IKEv2 Installation Sometimes Fails With Simultaneous Negotiations |
|
voiprtp_register_transport_port_manager_and_reserve: Alloc ports failed, min: 8000, max: 48199 248 |
|
Traceback is observed during mid-call media IP and port change |
|
Increase of dampening penalty on route refresh |
|
VRF deletion status <being deleted> after removing the RD |
|
mab authentication session on the interface is not cleared after unpluging |
|
Anyconnect: Hairpinning fails with cef enabled |
|
PFRv3 Incorrect time-stamp in traffic-class router change history |
|
PFRv3 Incorrect reported value of TCA threshold in traffic-class router change history |
|
OSPFv3 cost calculation not correct in some specific topology |
|
iBGP dynamic peer using TTL 1 |
|
DTMF fails when mid-call renegotiation changes DTMF method |
|
Watchdog crash within mgcpapp_free_sys_event_Q event dequeue loop after running 'ccm-manager config' |
|
CLI show aaa clients detailed command triggered SSH to crash |
|
Standby RP crashes due to shortage of memory when running OSPF |
|
link local multicast packets are received when the SVI is in down state |
|
CME with external SIP trunk registration results into crash. |
|
RADIUS client on network fails to solicit PAC key from CTS even though the device has a valid PAC |
|
CME: Toll fraud app not automatically trusting traffic from phones |
|
Pause Frames transmitted on interface even after traffic spike ends |
|
OSPF originates default route without "default-information originate" |
|
Backup path incorrect for ring topology where high ISIS cost is configured on 1 link. |
|
ospf routing loop for external route with multiple VLINKs/ABRs |
|
Path of Last Resort Sending Probes in Standby State |
|
mtu cli is disappeared from show run when interface dialer sh/no shu |
|
PfRv3: BR May Crash due to Channel Creation/Modification and Next-Hop State (Copied from CSCva72274) |
|
PKI:-IP address parsing issue while printing the subject name if classless IP is used in Trustpoint |
|
Crashed due to process = IPSec background proc |
|
OSPF neighbor stuck in loading after VSS switchover |
|
Crash with fragmented packets at the moment of doing a global->local translation |
|
CUBE is using wrong source IP address to send SIP error |
|
bgp crash while running show command and same time bgp peer reset |
|
Secure CME/SRST router with PRI/BRI not able send or receive calls |
|
ISIS for IP is enabled/installing routes in the RIB while IP routing is disabled |
|
491 not sent in a multiple re-invites in DO2EO scenario |
|
Branch BR crashed at cent_rpi_parent_del_user_ctx_by_ref with branch scale test |
|
Memory corruption at PKI Session End |
|
Cisco IOS and IOS XE Software SSH Connection on VRF Vulnerability |
|
High Availability system with two Voice Gateways - Crash |
|
C887: Ports stay in down state after software upgrade |
|
BGP 'address-family ipv4' sub-configuration is not shown in the running configuration |
|
Router crash - AFW_application_process |
|
Change the order of BYE and NOTIFY with 200 OK sipfrag body for successful REFER passthru scenario |
|
Initial contact in IKEv1 phase 2 rekey (QM1) causes all crypto sessions to drop |
|
[3945e] VXML gateway crash @ mrcp functions |
|
Extension Mobility Not working when used with Greek locale on SIP CME |
|
CUBE incorrectly fomats SIP SDP |
|
No calls shown in output "show call active voice brief" on CUBE & stale entries are present |
|
CUBE is not responding to SIP INFO |
|
CUBE crashes at sipSPI_ipip_vcc_CheckCodecSetType |
|
PMIPV6: Tunnel information on MAG for a GRE IPv6 tunnel shows invalid IPv4 addresses |
|
Incorrect Contact port 5060 used instead of 5061 by CUBE in "302 Moved Temporarily" message |
|
Rework need on CSCvj59170 to support SDP parsing |
|
CRL file is getting overwritten when PKI server turns up after reload |
|
One-way audio to IP phone if phone does hold/resume after 20 minutes on secure SIP GW |
|
Device crashed when call-home is enabled and non-ascii characters in use in login banner |
|
Crash due to out-of-memory condition, huge Memory @CENT-BR-0 |
|
SNMP queue full error on a router with VDSL controller |
|
CFD: PNP DNS discovery with trust pool flow uses IP address in PNP profile instead of FQDN |
|
iBGP PE-CE When Route-Reflect enable VRF import all Route Target. |
|
Crash when entering username with aaa common-criteria policy password |
|
IOS CUBE Ent does not show 'media anti-trombone' in configuration |
|
SIP CME Crashes when Calling Shared Line |
|
BGP updates missing ISIS advertising-bits led to LDP label purge on peer. |
|
"VoIP dial-Peer <XX> is Busied out" printed in log every 2 minutes when destination is not reachable |
|
VXML GW with Nuance SpeechSuite 10.X or11.X, MRCPv2 recordutterance / SaveWaveform failure |
|
Crash under AFW_application_process with shared-line configuration |
|
SNMP OID conflict.Trap being generated with wrong oid 6999.it should be 854 |
|
ASR-CUBE: Crashes with call spike configuration changes |
|
PKI authentication should proceed even if GetCACaps return any http failure |
|
IOS-XE CUBE HA Crash with re-invite audio call escalated to video |
|
CUBE doesn't forward 200 OK in SRTP-RTP scenario with TCL script on Dial-peer |
|
WATCHDOG with DHCP Client |
|
IOS and IOS-XE STCAPP service not updating DTMF RFC2833 payload when there is SCCP renegotiation |
|
DSM-3-INTERNAL: Internal Error : No DSM handle provided traceback on TDM voice gateway |
|
CUBE Crash in CCSIP_SPI_CONTROL process |
|
CUBE Crash in sipSPIAppAddCallInfoUI |
|
Entry level conference register getting hung, resulting into no hardware conference |
|
iWAN router PDP crash |
|
loss of two way audio with Skinny Phone, Line instance does not work until the next reboot. |
|
Router Crashes When PKI-CRL-IO_0 Runs out of Stack Space During Failed DNS Lookup for CA Server |
|
CUBE incorrectly fomats SIP SDP with Content-Length > 1024 |
|
CUBE-HA: Standby CUBE reports error VOICE_HA-3-DATA_RECREATE_ERR: (STBY-Create) in CCAPI module |
|
Crashed when type 'no service dhcp' with router use DHCP static binding file in DHCP pool |
|
SSRC-field in RTCP gets changes to 0 when going through TRP present in the media path. |
|
Recommit of CSCvm99778 - eca/ewlc/qwlc/mewlc Sanity : AP join failed. |
|
Router may experience a crash on process CENT-BR-0 when receiving an internal update |
|
iWAN domain password is overwritten by the global password, "password encryption aes" |
|
Flash corruption results in endless loop in dfs_init_inodetable |
|
IWAN Crash When Accessing Invalid Address |
Open Bugs—Cisco IOS Release 15.7(3)M4
Caveat ID Number |
Description |
---|---|
IOS/XE NTP synchronized but clock drifts |
|
Cisco IOS and IOS XE Software EnergyWise Denial of Service Vulnerabilities |
|
Key Server should limit registrations per second |
|
Excessive "Reflector" Tracelogs |
|
IR809/IR829 - Possible side-channel style information disclosure vuln |
|
High memory utilization over CENT-MC-0 and CENT-BR-0 processes |
|
config revert Rollback visible in console and locks up config from VTY |
|
Memory leak VOIP *MallocLite* |
|
High CPU due to Alignment Corrections - SMEF & IWAN |
|
memory leak @ CCSIP_SPI_CONTR |
|
Device-Sensor accounting TLVs not supported in ISR |
|
C867VAE-W ARP is not resolved on GigabitEthernet2 after reboot |
|
C881G-4G: Normal buffer leak with: pak_copy_network_start_particlized - cont #2. |
|
Crash caused by a "TLB Modification exception" after processing a null chunk in "IP Input" process. |
|
crash because of function "flow_exp_v5_new_pak" |
|
Certificate map does not work always with UPN in SAN field |
|
Recent configurations are lost after reboot |
|
CUBE fails to send outgoing SUBSCRIBE if egress dial-peer has "session server-group" configured |
|
QSIG - SIP - Connected Number Missing leading digit when decoding raw QSIG |
|
Crash closing background connections by form-based Webauth |
|
CUBE changing the payload for content sharing packets, though it negotiate correctly |
|
SIP global binding disappears when the interface to which SIP is bound flaps. |
|
BFD PP Process Crashes in Timer Wheel Replenish |
|
Tracebacks when login limit exceeds while logging into SSL VPN portal |
|
RPHY: RPD reports 66070209 L2TPv3 Connection Error unexpectedly |
|
CUBE - SDP version increment behaviour creates cypto interworking issues |
|
CLI "nat force-on" in voice service voip not working as expected |
|
CUBE DNS SRV Query is not performed for PRACK |
|
Chunk corruption crash when processing packet in CSDB_TCP_LISTEN state |
|
Input Queue Wedge due to cTCP |
Resolved Bugs—Cisco IOS Release 15.7(3)M3
Caveat ID Number |
Description |
---|---|
ENH: PKI, warn if trailing spaces are present in certificate map config |
|
Map doesn't get updated with socket change on local address change |
|
More memory leaks for IP nat translation |
|
call-home crash because calling XOS API in interrupt level |
|
Config Sync failure with Call-home, reporting smart-licensing-data |
|
Traceback is seen when a EEM script runs |
|
Double-free of VTY context causes a software-forced crash |
|
ASR1k crashed while unconfiguring Netflow |
|
EEM applet will not release the Config Session Lock if it ends when CLI is in configuration mode |
|
IKEv2 when key-config key is lost, type 6 pre-shared key encrypted form is sent as pre-shared key |
|
"password encryption aes" may break redundancy |
|
Error OCE-3-OCE_FWD_STATE_HANDLE Error seen on 2951 with traffic coming from a 5915 over crypto gre |
|
ASR1k netflow crash at flow_def_field_list_copy_with_callback |
|
KS merge fails for groups with TBAR due to PST update failure on primary KS |
|
After upgrade of IOS, SSH passwords longer than 25 characters do not work |
|
IOS-XE routers: Memory leak observed on process ivr: peer_item_t in AFW_application_process |
|
Cisco device unexpectedly reloads after TCP session timeout |
|
ISR4K - IOSd crash with SIGABRT with CCVPM_HTSP |
|
Error and pending objects when mma policy flap with egress monitor for multi-VRF case |
|
Cannot add 'show flow monitor cache sort' commands under 'privilege exec level' config |
|
List Header leak with PfR enabled |
|
ISM: Packet loss when VTI and Crypto Map are used with Port-Channel |
|
load-balance advanced moving traffic to fallback path when primary path are not over utilized |
|
Sporadic Crashes Due to IPSec (during ISAKMP AAA interaction) |
|
iwan router crash while updating pmi policy |
|
MTU on serial interface adjusts automatically to 1500 after an interface bounce |
|
SSH password length restricted to 25 for avoiding one of the low impact vulnerability. |
|
DMVPN: Crypto session stuck into UP-IDLE status after reconfiguring tunnel |
|
3650 -- high CPU due to TTY Background process |
|
There is junk entry in route-import table on branch when shutdown/no shutdown WAN interface |
|
ISDN memory leak |
|
CPP crash stuck thread detected multikey_hash_replace_int |
|
Wrong initial number of DPD incrementing error counter. |
|
Polaris Routers - Memory leak under process RECMSPAPP in IOSd |
|
C841M monitor session not work |
|
Local LAN-only prefix present in master route-import table but not present in site prefix DB |
|
VAI Leaks with IKEv1 DVTI |
|
performance-monitor does not report classification after tunnel shutdown |
|
C841M traffic cannot be forwarded once storm-control changed from blocking to forwarding |
|
PORT_SECURITY-2-PSECURE_VIOLATION when clear dynamically learned MAC after applying MAC Secure |
|
Router with SIP traffic crashes at ccsip_free_kpml_info |
|
ISAKMP Notification messages carry unnecessary data |
|
Overruns due to nbar with bursty flows |
|
Memory leak due to asnl |
|
vstack breaks config-replace / CWMP |
|
SIP stack matching the dial-peer when processing NOTIFY message causing call routing issues |
|
Abnormal output for show pnp tech-support |
|
Loss TCA is not generated for traffic with DSCP0 when 0-SLA enabled |
|
ephone-dn with shared line sip in ESRST GW causing call incoming failure |
|
Cisco2921 ssh/console session hung when config script runs flowcontrol hardware command |
|
Cube sends reinvite with annexb=yes even when it receives annexb=no |
|
ISDN - BRI - 'progress_ind' command does not work |
|
EZVPN stuck at reboot with speed/duplex hard-coded |
|
MGRE Hub-to-spoke traffic getting decapsulated on P2P gre interface. |
|
Device with SUDI string at the hostname crashes after an attempt to generate a crypto key |
|
DSL line trains up even though controller vdsl 0 is admin shut |
|
VRF aware CUBE fails to send OOD OPTIONS pings |
|
T1/E1 CAS: Remove "pulse" option from "dial-type" command for EM/FXO digital CAS circuits |
|
PFRv3 route-control is inconsistently set to "Disabled" on BR devices |
|
ISR4451 Installs 2 IPsec SA's with different peers having same proxy identities |
|
Ensure load-balance internet TC's don't match 'class DEFAULT' if configured |
|
Unexpected Reset, Crypto IKMP Segmentation fault with IPSec AAA Configuration |
|
ZBFW : Zone pair policies with default zone don't match for return traffic |
|
SYS-3-INVMEMINT: Invalid memory action prior crash with MoH + route list |
|
CUBE does not update Session number after receiving a 491 request Pending Message |
|
2921 constantly freezes due to BADSHARE error |
|
SM-ES3G-24-P denied power beyond 480Watt by Cisco3945e chassis |
|
PI IOSd reload due to call-home at kex_dh_hash conn pointing to eem |
|
SCCP CME - Call Drop on Consult Transfer with a line monitoring an FXO |
|
Reverse-route configuration is unsupported under gdoi crypto map |
|
SNMPwalk of cipslaPercentileLatestStatsTable does not give all the cipslaPercentileTypeVar types |
|
ISR 4431 crashing immediately following auto-CA certificate renewal |
|
"VoIP dial-Peer is Up" incorrectly log prints at every up interval when server-group is configured |
|
LLDP System capabilities flag not set |
|
Stack corruption crash on ESR |
|
IOS: Crypto Ruleset fails to get deleted |
|
Voice VRF with No Bind OPTIONS Ping response not sent |
|
Crash after failing to modify xcode |
|
C897VAG seeing "%SNMP-3-INPUT_QFULL_ERR: Packet dropped due to input queue full" logs |
|
Crash during Generic Call Filter Module cleanup |
|
CME: Shared lines are showing dial-peer destination pattern tag instead of caller name |
|
%PMIPV6-5-TUNNELDELETE: |
|
c3900E w/SPE200 - 15.5(3)M7 - bus error crash with IPv6 crypto traffic and high CPU |
|
CUBE fails to handle second SDP Offer during initial dialog setup |
|
3945 router crash with agent number increased to 300 after adding new feature ASR to VXML Gateway |
|
Redzone overlay copying SIP SDP data |
|
ISR crashes after 'no parameter-map type cws global' command |
|
FlexVPN || DHCP entries not flushing for ikev2 timed out reconnect sessions |
|
GETVPN Key Servers after split may generate TEK with same SPI but different key material |
|
Router crashes @ memcpy, mdns_read_packet |
|
Crash while doing a conference call |
|
Directly connected IPV6 connectivity broken 800 series router |
|
MGCP status remains Down after IOS upgrade caused by CSCvh70570 |
Open Bugs—Cisco IOS Release 15.7(3)M3
Caveat ID Number |
Description |
---|---|
Cisco IOS and IOS XE Software EnergyWise Denial of Service Vulnerabilities |
|
Traffic export (RITE) corrupts the copied packets received on a vDSL/PPPOE interface |
|
High CPU Due to "Async write proc" During Hung Filesystem Operation |
|
Memory leak under Chunk Manager / Firewall State |
|
Excessive "Reflector" Tracelogs |
|
Anyconnect: Hairpinning fails with cef enabled |
|
IR809/IR829 - Possible side-channel style information disclosure vuln |
|
High CPU due to Alignment Corrections - SMEF & IWAN |
|
CNS Exec process crash @ cns_get_config_from_server |
|
mtu cli is disappeared from show run when interface dialer sh/no shu |
|
3650 mab failover does not work after first failed dot1x authentication |
|
Memory leak on the Small Buffer pool due to "x25swt_last_resort" process |
|
"ip address dhcp" may disappear from configuration affecting forwarding capability |
|
DMVPN crypto packets are not egressing C891 |
|
Command 'ipv6 tcp adjust-mss 1360' does not take effect with GETVPN |
|
Incorrect values for conformed traffic upon applying PIR values greater than 4G |
|
Secure SRST router with E1 PRI not able send or receive calls |
|
Device-Sensor accounting TLVs not supported in ISR |
|
X25 translation failing on cisco 2900 router |
|
C800 : LLDP-MED packets have network-policy TLVs with DSCP 0 value by default |
|
ACS URL not overwritten when sent from DHCP Server |
|
DSP detected FXO "supervisory disconnect dualtone mid-call" is treated as CNG tone |
|
Memory corruption at PKI Session End |
|
C841M: usb dongle modem queue stuck |
|
COOP ANN messages fail to send around the time of TEK generation |
|
C887: Ports stay in down state after software upgrade |
|
Dot1x on C886 routers fails in multi-domain mode |
|
LLDP pkt drop on intf <Intf> when disabling lldp on this interface |
|
Lisp router crash with enabling IPv6 and DHCP relay. |
|
VXML gateway setting "Mtransfer" as 'unknown' in certain cvp bridge transfer calls causing issues |
Resolved Bugs—Cisco IOS Release 15.7(3)M2
Caveat ID Number |
Description |
---|---|
router crash while connecting to the camera on the NAT enabled interface |
|
IOS Crash in Timer Wheel Tick on High Timer Churn |
|
Autoboot sequence suspends on repeated power toggle |
|
Communication through Serial port not going through RTS down |
|
Cisco IOS and IOS XE Software Plug-and-Play PKI API Certificate Validation Vulnerability |
|
891FW Wlan-GigabitEthernet8 interface down in trunk mode |
|
Cisco IOS and IOS XE Software IOS daemon Cross-Site Scripting Vulnerability |
|
SNMP Walk for cpmProcessEntry mib causes the crash |
|
Memory leak in IPSEC key engine process |
|
Router crash on polling cEigrpPeerEntry |
|
Mid-call failure because all available Crypto is not Offered in SDP |
|
Bundled BIOS upgrade failure |
|
‘ipsm Tunnel Entry’ and ‘Crypto IKMP’ memory leak due to IKE tunnel entry not deleted |
|
OPTIONS not replied by CUBE over TCP without interface bind |
|
Crash at cc_detect_mute_call |
|
%CGR1K_IOH_I2C-3-MUX_DANGLING: Attempt to enable MUX port no 1 while port no 1 is already enabled |
|
PVID error message in trunk of C800 when it is not the root bridge |
|
"*Packet Header*" and "pak subblock chunk" leak |
|
Global bind disappears when bind interface flaps during an active call |
|
"no cdp enable" is rewritten to "no cdp tlv app" after reload. |
|
Cisco Smart Install Remote Code Execution and Denial of Service Vulnerability |
|
Crash seen on VDSL with ATM over Ethernet configuration |
|
Dynamic MAC learning fails with 'mac-address-table secure' configuration |
|
ISR 4k SCCP Process Does Not Wait for All PVDM Modules to Come Up Before Registering |
|
IOSd crash while applying dial peer configuration |
|
Router loses RSA keys and type 6 password encryption key upon boot with private-config encryption |
|
IR809 Giga ports always showing 1Gbps BW if hardcode speed x/duplex full |
|
ISR G2 VRF+PBR+NAT may not work with CEF under certain scenarios |
|
ISM stops forwarding IPSEC traffic / %OCE-3-OCE_FWD_STATE_HANDLE / free_ob=75000 |
|
8800 KEM module not getting detected on 88XX phones with CME 12,11.6 |
|
NAT not doing translation for SIP payload |
|
router crashed after entered "no ipv6 access-class sl_def_ipv6_acl in" during quiet mode |
|
NAT-HA on Cisco 2900s breaks if it is asymmetric routing. |
|
Crashes seen with C2900+ISM crypto engine with high traffic rates / high CPU |
Open Bugs—Cisco IOS Release 15.7(3)M2
Caveat ID Number |
Description |
---|---|
Cisco IOS and IOS XE Software EnergyWise Denial of Service Vulnerabilities |
|
Map does notget updated with socket change on local address change |
|
More memory leaks for IP nat translation |
|
Traffic export (RITE) corrupts the copied packets received on a vDSL/PPPOE interface |
|
High CPU Due to “Async write proc” During Hung Filesystem Operation |
|
Normal buffer leak with: pak_copy_network_start_particlized - cont. |
|
Memory leak in Chunk Manager process triggered by Flexible Netflow |
|
Anyconnect: Hairpinning fails with cef enabled |
|
Evaluation of c800 for CPU Side-Channel Information Disclosure Vulnerability |
|
Static NAT entry disappears from running-config with NVI nat |
|
IOS SSLVPN/ISM: Anyconnect data traffic stops working with TLS-only transport |
|
MGRE Hub-to-spoke traffic getting decapsulated on P2P gre interface. |
|
VRF aware CUBE fails to send OOD OPTIONS pings |
|
router crashed when memory copy of SHA1Update with Process “encrypt proc” |
|
DMVPN tunnel stuck after Cellular interface flap |
|
CUBE/CUBE-HA crashes in local_xcode_rtp_xmit and voip_rtp_recv_fs_input with transcoder setup |
|
ZBFW: Zone pair policies with default zone does not match for return traffic |
|
Recursive routing / Tunnel loop causing memory corruption and crash |
Resolved Bugs—Cisco IOS Release 15.7(3)M1
Caveat ID Number |
Description |
---|---|
Switch crashes after getnext on the last cafServerAliveAction index |
|
Crah seen @ trigger_auth_command |
|
Cisco IOS and IOS XE Software DHCP Client Denial of Service Vulnerability |
|
IPv6 Tracking for route learned from IBGP Neighbor is Down. |
|
ISIS hello stops to be sent after RSP switchover |
|
Switch crashed after add "ip wccp 61 global" command during traffic |
|
RFC: BGP sending error sub-code: 8 instead of '4' |
|
Crash when configuring CWS |
|
router crash in qos acl check |
|
BGP session is reset when unrecognized capability received in OPEN message |
|
ASR1k/ISG : 3.13.6 : Crash due to bad id in id_to_ptr when sending Accounting to non-existing group |
|
LDAP authentication reuses old TCP connection |
|
Crash in Crypto IKEv2 process |
|
Incorrect Radius Server Status when locally defined user called in tester command |
|
Default route via dialer interface stays up, even when dialer is down. |
|
static route is not getting redistributed into RIP database |
|
DMVPN : IOS-XE - Unable to pass traffic if spoke to spoke fails to build in phase 2 |
|
3750E switch crashes Process "DHCPD Receive" |
|
SCEP enrollment failing with HTTP/1.1 500 Internal Error |
|
Asr1k crashes at PPP process on pushing 4 or more per-user static ipv6 routes |
|
Route-map for static nat statement gets removed by itself |
|
IPSec Tunnel stuck in Up/Down state after shut/no-shut - VPN Interop |
|
The second and later PfRv3 VRF configs are missing after reload |
|
asr1k is unable to recover from the tunnel flapping at scale for IKEv2 dmVPN/BGP |
|
cft_fid_table_new_flow causing Memory Fragmentation on c3900 |
|
crash over CCSIP_SPI_CONTROL process due to null pointer / segmentation fault |
|
Slow convergence with scale after a core link flaps |
|
BGP crashes at bgp_ha_sso_enable_ssomode |
|
IPv6 ESP traffic incorrectly dropped after decryption by IPv6 interface access-list |
|
router crash with "param long-dur-action disconnect" |
|
Authorization fails CLIs spanning VSS-Active and VSS-stby // CSCud74480 |
|
Nested Enhanced Route Refresh requests triggers Stale Prefixes. |
|
Standby Router crash when there is a m-line shrink case within the dialog. |
|
In-dialog options ping received post ACK (call completion) cause cube to change codec and no audio |
|
Need a CLI command to control logging-tag in non-generic messages |
|
Router getting hang after reload when using static NAT |
|
VRRPv3 with VRRS remains NOT READY after shutdown Port-channel IF. |
|
CUBE HA w/multitenant not processing OPTIONS |
|
IOS-XE CUBE HA crash |
|
ISR4K not correctly handling forked 18X responses with SDP |
|
stale path message for that prefix is noticed when dampening is configured. |
|
Crash after reconfiguring 'login quiet-mode access-class' or 'login block-for' |
|
PFRV3: Site Prefix shows unreachable after removing and adding the specific route for the prefix |
|
VXML GW is unable to populate the MRCP V2 headers based on child VXML documents |
|
CSR1k: Crash observed @ __be_cent_br_check_valid_ndb_prefix |
|
router crash after EEM-wanfailover script triggered |
|
CUBE can't handle mid-call re-invite when midcall-signalling passthrough mediachange is configured |
|
IOS-XE GETVPN KS crashes while sending cgmGdoiKeyServerRegistrationComplete trap after GM reg |
|
Crash in SSH Process due to SCP memory corruption |
|
Voice Gateway crash due to memory corruption while finding DN index during redirect |
|
GETVPN: TBAR sync "timer is not running" after KS upgrade causing anti-reply drops and GM outages |
|
Router crash during T38 fax bitrate negotiation |
|
Crash after show ip ospf database summary command |
|
Crash when issuing no dspfarm profile x stuck on DOWN_PENDING state. |
|
Crash due to a null pointer dereference on htsp structure |
|
Memory leak due to IP SLAs XOS Event Processor |
|
Router crashes when doing "show ip bgp neighbor" on a flapping BGP neighborship |
|
BGP w/global import/export crashes when several nbrs deleted simultaneously |
|
Unicast ping stops working when "ip pim sparse-mode" removed from SVI |
|
e1r2-Cas is not working when adding "invert-abcd 1 0 0 0" |
|
NBAR First Packet Classification fails with AppNav enabled |
|
CRL download fails due to "failed to create getcacert message" |
|
Bundle-install timeout due to IOS extraction failure |
|
option 82 circuit-id-tag restricted by 6 bytes |
|
ASR1K: IOSd crash in kmi_initial_check on null map dereference |
|
ASR920: Router Crashed after configuring PPP CHAP in multilink interface(OC3IM OC12IM) |
|
C891-24X/K9 BDI not forwarding traffic as mac address 0000.0000.0000 |
|
Memory leak in SSLVPN_PROCESS due to sslvpn aaa |
|
CUBE is unable to send PRACK to Skype server for inbound calls |
|
Stale Mac entry in MLRIB |
|
BE4K Crashed @CS_Placecall_Sharedln |
|
C5921 in storage node-lock mode incorrectly detects physical hardware as VM |
|
Memory leak with DMVPN tunnel protection ipsec |
|
ISR4K - XE 16.3.4 - SIP-TDM GW - FLEXDSPRM-3-TDM_CONNECT errors and crash |
|
CFD: pnp config upgrade failed when IFS returns size 0 for all TFTP files |
Open Bugs—Cisco IOS Release 15.7(3)M1
Caveat ID Number |
Description |
---|---|
Feature Enhancement Request for ARP entry limit capability |
|
Cauvery[SIT]:Dot1x session stuck in U/R state after switchover. |
|
Evaluation of cgr1000 for OpenSSL January 2016 |
|
Traffic export (RITE) corrupts the copied packets received on a vDSL/PPPOE interface |
|
CGNA: Not able to apply config when there is only Cellular interface |
|
CGNA: Lack of input sanitization during memory allocation |
|
ISR 8xx - High CPU Due to "Async write proc" During Hung Filesystem Operation |
|
RSVP neighbor is not coming up after reloading ASR9001 peer |
|
AAA Acct sessions memory held up for LMA bindings even after cleanup |
|
IPsec/IKEv2 Installation Sometimes Fails With Simultaneous Negotiations |
|
891FW Wlan-GigabitEthernet8 interface down in trunk mode |
|
Cisco IOS and IOS XE Software IOS daemon Cross-Site Scripting Vulnerability |
|
In protocol translation (x25 to tcp) the swap keyword has no effect. |
|
Memory leak in IPSEC key engine process |
|
Share line memory corruption crash while transferring a call |
|
Normal buffer leak with: pak_copy_network_start_particlized - cont. |
|
Voice loop causes router to lock up |
|
Memory leak in IP NAT Ager and small buffers |
|
Memory leak on "PERFMON ASYNC TI" process at fmm_flow_table_entry_alloc |
|
PVID error message in trunk of C800 when it is not the root bridge |
|
"*Packet Header*" and "pak subblock chunk" leak |
|
IOS crash after EHWIC-4G-LTE-G modem firmware upgrade |
Resolved Bugs—Cisco IOS Release 15.7(3)M
Caveat ID Number |
Description |
---|---|
AAA crash on multiple username deletions - Part 2 |
|
ASR1k: ISG sends in Accounting-Response Message-Authenticator[80] |
|
Bulk-sync failure due to ip radius source-interface Vlan701 vrf VRF_MGMT |
|
Function radius_message_authenticator_decode |
|
Radius packets are timed out caused link to go Critical-auth. |
|
Rework of CSCuz48415 |
|
Show aaa servers command results in crash due to SSH process stacklow |
|
Crash in ALPS SNMP code |
|
[DT]Crash oberseved while sending ANCP port up |
|
Incorrect Radius NAS-Port-Id with PPPoE sessions in ASR1001-X router |
|
NBAR does not support dialer interface support on IOS-XE |
|
AN NTP peer association on fresh device or device without valid clock |
|
AN: "connect" & "adjacency-discovery" cli is getting applied on L2 int |
|
AN: ACP is not getting created after save & reload in some specific scenario |
|
AN: AN drops CD received on Fastethernet interface in ASR1K |
|
AN: AN memory holding grows during longitivtiy test |
|
AN: AN should do "write memory" after receiving renewed certificate. |
|
AN: ASR901 hangs after AN aborts setup dialogue |
|
AN: Channel/Nbr flap during bootstrap in ASR903 with standby RSP. |
|
AN: Nbr/ACP flap continuously when a rouge device tried to join |
|
AN: Standby reload due to config-sync failure at CISCO_AN_IPSEC_PROFILE |
|
AN: ULA is configured on ANI & same ANI used for multiple neighbors |
|
Autonomic Networking Infrastructure Adjacency Discovery DoS Vulnerability |
|
Autonomic Networking Infrastructure Registrar Device Reload |
|
BFD session not coming up after interface in VRF shut and no shut |
|
Sup8-E removing bfd template from interface causes standby to reload |
|
"distance bgp 255 0 0" getting conf under IPv6 AF after some sequence of steps |
|
After reload route policy processing not re-evaluate with route-map using match RPKI |
|
ASR903/RSP1B&RSP3C 3sec to 10sec loss on RSP switchover when SSO enabled |
|
BGP crashed configuring different update-source interface with v6 LL peering |
|
BGP crashes when removing advertise-map |
|
BGP table show detail not displaying CIDR values for classful networks |
|
Config replace with 2000 sites config, BGP router crash unexpectedly |
|
Duplicate BGP prefixes are not dropped |
|
eVPN PMSI VNI decoding / encoding as MPLS label |
|
High CPU due to periodic route refresh to VPN peers using rtfilter AF |
|
inbound route-map support to modify next hop for ipv6 BGP |
|
Incorrect VPN withdraw with overlapping RT on multiple RT Filter |
|
no export ipv4 unicast map triggered router to crash |
|
No route update to peer while moving VNI from 1NVE interface to other |
|
NSF/SSO feature not honouring TCP MSS |
|
Prefixes were not imported to Global BGP table |
|
RJIL RT Filter peer sometimes unable to receive vpnv4 or vpnv6 nets |
|
Router crashes using BGP commands for long cost extended community string |
|
Router crashes using show BGP commands |
|
Router may crash after multiple show ip bgp sum/neighbor |
|
Support of RFC7432 EVPN route type 4 of originating router IPv4/IPv6 address |
|
UUT failed to send vpnv4/v6 routes to peer |
|
vrf blue doesnt receive type 7 croute |
|
Wrong Source IP Selection for eBGP in EVN/VNET environment |
|
[ASR1K] EBGP IPv6 NH changed global address after RPSO with NSR |
|
Crash in Bstun SNMP code |
|
5920 and host OS's time causing the handshake validation to fail |
|
Smart license go to EVAL MODE when perform SUPHA |
|
CBR8 : IPv6 CPE become unpingable after ND resolution fails |
|
Cisco2921 crash when disable/enable ACL list repeatly by ssh |
|
In ISRG2, ZBFW default zone does not work for sub-interface. |
|
Crash While Accessing CallManager XML Config |
|
Layer 3 binding of BRI stays up during mgcp fallback in ISR 4000 |
|
memory leak due to CDP enabled on tunnel(ipsec) |
|
Command injection in IOx commands on IOS |
|
CGR1240 : GPS LED not work |
|
CGR1240: Gig2/1 and Gig2/2 LEDs got mixed up while using SFP |
|
Wifi LED does't turn on in CGR1000 router with IOS |
|
Evaluation of cgr1000 for OpenSSL May 2016 |
|
MAINBOARD-3-I2CRW_ERROR |
|
Memory corruption, crash from Cavium GE driver on CGR 2010 |
|
Auto-registration failure warning and RTP port allocation failure |
|
Calls headed towards CUCM failing if ESRST is configured |
|
CCSIP-REGISTER memory leak when phones are registered with fresh configs |
|
CME No ringback after blind transfer |
|
Memory leak seen in shared line code |
|
Night service act/de-act differs between sip and sccp phones |
|
SCCP Nightservice state is toggled even after night service slot |
|
SCCP Phones on CME not forwarding video packets on outbound calls |
|
SCCP Transfer Recall happening when XTO is member of hunt group |
|
Spurious memory access made in the CME code |
|
+ Dialing not work in SRST with overlap signal for sccp phones |
|
CME GUI changes for 11.6 release |
|
CME GUI not showing correct version |
|
Incorrect indexing in bulk speed dial + CME |
|
User receives "Transfer to is busy" when transferring calls to an Octo-line |
|
7821 CME 11 with FR locale display overlapped text and unwanted chars |
|
CME crashes during CTL file generation |
|
7861 - Adding speed-dial on button 16 causes loss of blf-speed-dial keys |
|
Assigning hunt group tag attribute in destination module in Seq VHG call |
|
Call unpark doesnot work when translation profile is applied. |
|
CME : missed call notification service in phone config for 78XX phones. |
|
CME Local Directory fails blank page or XML error on IOS-XE platforms |
|
CME not placing call to 2nd hunt group dn in Hunt group daisy chain |
|
CME rejects SIP phone when joining conference with 403 |
|
CME SIP: User Busy on Shared Line due to Call Leak |
|
Crash due memory corruption in AFW |
|
Ephone-DN remains in down state when restart all is given in telephony-service |
|
External Ring on 78XX phones doesn't work on CME |
|
IOS does not consider rule set containing translation and reject rule |
|
Issues with TCP on SIP Phones for Call-Pickup on Line 2, VHG Auto Logout and Presentation Call |
|
Memory Leak observed. |
|
One way audio in conference when using voice-class codec in SIP CME |
|
Router crashed in afw application |
|
SCME crashes when it has max-pools configured |
|
shared line SIP-SCCP not working on ESRST gateway |
|
SIP CME relays out "Authorization: header" received from IP Phone. |
|
sip phones are not notified when sccp phone answers the call (mixed shared line) |
|
SIP phones shows 1 hour time delay when summer time is configured |
|
SRST Clock is 9H faster on 200OK from Router |
|
Trust List / Toll Fraud Feature vulnerability on CME |
|
[CME] User unable to configure mac address under ephone in certain condition |
|
CME SIP: Crash occurs when invalid SNR extension and debugs are enabled |
|
AQOS suggest incorrect rate as Rx_Bytes counter sent is 0 |
|
I/O pool memory leak when packets are redirected to ISM0/1 interface |
|
ISM-VPN enabled: BGP neighbor not coming up |
|
ISRG2 crashes due to Align-fatal when using ISM-VPN module. |
|
One-way Netflow with IPsec Tunnel-in-Tunnel using ISM-VPN-29 |
|
OSPFv3 AUTH breaks IPv6 traffic intermittently |
|
Spurious memory access when booting C2911 w/ISM-VPN-29 and 15.5(3)M5a |
|
ESP-NULL with ikev2 doesn't pass traffic on 881 with crypto engine accelerator on |
|
QoS classification issue with L2TPv2 |
|
After reload static route is missing from RIB |
|
CPU Hike seen in XE 316 due to VTEMPLATE BKG OW Process |
|
IPV4 address negotiated by the aggregator not installed |
|
Old DHCP Default Route gets re-added to the RIB along with new Default Route |
|
VRF Routes sent via DHCP do not appear in RIB after reload |
|
Crash: STACKLOW crash while configuring mDNS |
|
Random IP addresses ase seen in running-configuration when set "ip host additional" |
|
The 4510 switch with 03.03.03.XO does not generate accounting updates |
|
hairpin call loop crash |
|
Increase Number of Supported DSP Conference Profiles |
|
IOS secure conferencing leads to SRTP bandwidth and tunnels usage to exceed the license limits |
|
IOS/IOS-XE logging "sym_xapp_calleg_setup_req:codec not passthru do_rtcp == TRUE" messages |
|
Crash using EIGRP and DVTI with IKEv2 |
|
EIGRP /30 Serial Point-to-Point Subnet Not deleted after link down |
|
EIGRP sending hello messages with interface in passive mode. |
|
EIGRP summary route not removed after disabling "redistribute connected" |
|
eigrp to mp-bgp redistribution issue when metric changed |
|
Incorrect subinterface enabled for EIGRP in vrf aware OTP |
|
Large EIGRP SAF updates close to max size may induce stale condition |
|
Router crash when removing EIGRP |
|
Virtual-Access interfaces are saving to the EIGRP running-config |
|
VNET global vrf neighbor is down after an interface flap |
|
ASR/ISR4K DTMF 2833 to 2833 Not Working with MTP CoLocated and OOB+2833 |
|
2921: "ethernet lmi ce" is configured by default |
|
HSRP crashed after changed serial int FR encap from IETF to HDLC |
|
IPv6 address with VRRS does not transfer traffic properly. |
|
3850 Crash in "CEF: IPv4" Process While Processing ARP Throttle Elements |
|
FIB recursive loop crash |
|
Missing FIB subblock causes crash when configuring vrf |
|
Self ping to port channel sub interface dropped with LISP decap log |
|
traffic drop observed upto 2 mins on active Sup pull with ECMP |
|
Add NBAR support for IIF_ID |
|
Fnf related tracebacks and fnf config issues during ISSU process |
|
IOS-XE reload when configuring privilege exec level for Flexible Netflow |
|
No flow records sent when collect app http host/url and ssl added to FNF |
|
Router charshes while configuring flow-monitor |
|
Router crash when removing EzPM configs |
|
HTTP closing newly opened connections due to duplicate FD |
|
Ability to select the TLS 1.2 / SHA2 ciphers via CLI (ip http secure-ciphercuite) |
|
ENH: Specify SSL/TLS Version for HTTP secure-server Feature |
|
boot config flash0:init-conf nvbypass CLI failed: File system flash0: is unavailable |
|
AN: Router crash during ACP flap pointing to ikev2 |
|
crash due to Auth-proxy HTTP daemon process failing |
|
IPS: Crash@ips_dp_delete_half_open_session Part II |
|
command sh run caused router to pause passing traffic 1 to 2 seconds. |
|
"CWS Telemetry Process" Crash on Whitelist Upgrade With CSCup94022 Fix |
|
CWS/ISR 1900 15.5(3)M1 whitelist download enable stops updating |
|
Double free @ CWS tower polling results in crash |
|
Memory leak in the small buffers, CCE dp subblock and *Packet Header* |
|
IOS WAAS crash in DRE on ISR |
|
Unable to Delete System Defined Port Maps |
|
ISR4K DMVPN iBGP BFD sessions are not coming up with NBAR enabled |
|
IOS-XE EPC does not work on port-channel subinterfaces |
|
ingress ping results in packet loss if not using a large size packet |
|
ping vrf fails when source interface specified is not in the same vrf |
|
SNMP walk of ipNetToMediaTable/atTable leads to high CPU util issue |
|
(RC)ISR 4451 PfR Due to FP Route-Map (Modification of CSCva79279 fix) |
|
"no default-information originate" doesnt work unless "default-information originate" is added first |
|
High CPU Utilization with RIP Timers |
|
Re-Commit the Fix of CSCuj99156 which was removed via CSCux53443 |
|
RIP is accepting the packets even if its not from RIP port |
|
3900E not able to handle ospf peerings after the spokes cross 300 numeric count in dual hub design. |
|
Crash during the show interface CMD while a multicast tunnel goes down |
|
Error on configuring "no snmp trap link-status" under Virtual-template |
|
IP tunnel inconsistencies cause memory corruption, crash |
|
ISATAP Server feature broken on ASR1K |
|
VxLAN tunnel display issues |
|
ASR/ISRG3 DTMF SIP INFO to RFC 2833 Support |
|
ASR1K CUBE Hung calls |
|
C3900 in CUBE B2B HA setup, standby crash under voip traffic |
|
Cannot connect a TLS session on an interface that contains a VRF that also uses a redundancy group |
|
Commit CSCum96146 CUBE HA pair crash into 15.5 |
|
core in 15.3(3)S5 resulting in 503 service unavailable |
|
CPU hog in sip_tls_tcp_read_socket if sipContext is NULL. |
|
CSR1000v HA Checkpointing Broken for Video Calls with SDP Pass-Thru |
|
CUBE - No audio for DO-EO FA when PRACK enabled on incoming call leg |
|
CUBE crash in resolve_sig_ip_address_to_bind NULL ccb |
|
CUBE doesn't Update the codec in UPDATE in signal forking early media renegotiation scenarios. |
|
CUBE DTMF p-type does not adhere to the signaling |
|
CUBE Ent crashes when Diversion header received with no user portion and 'history-info' enabled |
|
CUBE fails to routecalls with overlap interface IP+dialpeer IP multiVRF |
|
CUBE is not converting 181 to 183 SIP message |
|
CUBE is stripping "Session-Expire" header |
|
CUBE isn't sending 200 OK during consulting transfer |
|
CUBE replaces G723 with G729 |
|
CUBE responds 500 Internal Server Error to received= instead of via |
|
CUBE returns wrong data for SNMP OID CvCallVolConnActiveConnection |
|
CUBE sending duplicate session ID for BYE/CANCEL transaction |
|
CUBE sends ptime: 160 with midcall-signaling preserve-codec |
|
CUBE sends two wsapi notifications for audio to fax-pthru esc and desc |
|
CUBE-Ent: Sending 488 if UPDATE SDP differs from INVITE SDP |
|
DTMF issue on ISR G3/ASR during the prompt using TCL Script |
|
Glare condition exists for mid call DO INVITE when CUBE receives in-dialogue SIP OPTIONS message |
|
Incorrect PRC values while configuring modem passthrough protocol codec |
|
IOS-XE Drops Video When VCS Starts a Video Conference |
|
IOS-XE router crashed due to possible memory leak issue due to CCSIP_SPI_CTRL |
|
IOSd crash @ cc_detect_mute_call with divide by zero |
|
Media forking causes the interface to physically hang |
|
Memory Leak seen at CCSIP_SPI_CONTROL |
|
Response 404 received for busied dial-peer when 503 was expected |
|
Router crashes when parsing ack for mid call |
|
SIP Profile does incorrect modification - the variable name is added in signalling |
|
SIPREC Media forking INVITE is not being sent to Recording Server. |
|
srtp call is getting terminated as rtp call in CUBE |
|
when refereto-passing is set session target is not getting priority |
|
[Cube-Hardening] No-form of tenant CLI's are not displayed in show-run |
|
"crypto ipsec fragmentation before-encryption" command disappears after reload |
|
"show crypto map" displays incorrect wildcard mask for crypto access-list |
|
Duplicate SA causes tunnel interface down |
|
ezvpn client config dissapears from dialer int when pppoe session flaps |
|
GETVPN : total packet loss after 2nd ESP switchover (PI-fix) |
|
GETVPN: crash due to unexpected exception to CPU during Reg/Rekey policies from KS |
|
IKEv2 IPv6 GRE IPSec fails to stabilize on asr1k on 16.3 |
|
IKEv2: pkts doubled in interim accounting update post ipsec rekey |
|
IPSec crash on ASR1k router while processing KMI |
|
IPSec MIB: Global IPsec Traffic counters are reported incorrectly |
|
IPsec: For sVTI after rekey old SAs are not getting deleted |
|
IPv6 crypto map, unexpected error message shown in the configuration. |
|
ipv6 OSPFv3 crypto session doesnt come UP after reload |
|
L2TP/IPSEC from non-patted environment fails with set nat demux |
|
Modifying crypto ACL leads to a removal of crypto map config |
|
Session coming up late after RP failover due to PD delay in polaris |
|
SYS-3-BADLIST_DESTROY is seen when executing show crypto session brief |
|
Crash at update of context nhrp |
|
DMVPN Phase3 OSPF Broadcast: NHO addition fails - insufficient resources |
|
Crash in IKEv2 when fragmentation is used |
|
Crash in IKEv2 when using FlexVPN + RADIUS |
|
G-IKEv2: GM fails to process rekey after coop failover to new primary KS |
|
GETVPN GM in "Not initialised" state after ISSU runversion |
|
GETVPN on ASR with vasi interface fail to install the Rekey |
|
GETVPN: GM reuses old ip address for re-registration and fails |
|
GETVPN: Post 15.2 GMs re-register after merge in certain conditions |
|
lifetime mismatch after outage of primary key server |
|
Sig hash algorithm not detected correctly when SHA 256 is used |
|
Stateless IPSec HA doesn't work when HSRP packets are being recirculated on VASI link |
|
"clear crypto ikev2 stats" clears active SA and negotiating SA counter in "show crypto ikev2 stats" |
|
"show crypto ikev2 stats" shows stale active SA count |
|
Behavior difference between XE3.17 and Polaris |
|
Crash in Crypto IKEv2 process |
|
Crash in Crypto IKEv2 process for IR829 |
|
IKEv2 - 2nd rekey fails if either or both peers do not support IETF frag |
|
IKEv2 Aggregate-auth Timing Issue |
|
IKEV2 Default Proposal Reset After Reload |
|
IKEv2 tunnel fails to come up b/w Cisco routers post upgrading one router to 15.5(3)S5, 15.5(3)M5 |
|
IKEv2: Unable to initiate IKE session to a specific peer due to 'in-neg' SA Leak |
|
IOS IKEv2 profile NVgen local auth is rejected from startup configuration upon reload |
|
Unable to initiate IKE sessions due to mismatch in CAC counters |
|
BenignCertain on IOS and IOS-XE |
|
Call Admission Control active ISAKMP SA leak when ISAKMP SA deleted immediately after MM6 |
|
IKEv1 DPD delete logic causes stale phase 2 |
|
Issuing "show crypto isa peer" or similar could trigger a crash |
|
ASR920: Configured Isakmp policies doesnt populate as expected. |
|
Cisco IOS and IOS XE System Software SNMP Subsystem Denial of Service Vulnerability |
|
csr1000v is not able to poll CISCO-IPSEC-FLOW-MONITOR-MIB |
|
IPSec FlowMib doesn't work fully with OSPFv3 ipsec SAs |
|
IPSec MIB queries results in memory leak and shows wrong SNMP value. |
|
crypto crashed unexpectedly |
|
dqueue not empty prior to destruction crashes ipv4fib_les_switch_wrapper |
|
Fragment packets are dropped in LISP + NAT + GETVPN network |
|
IPSec MIB: Global IPsec traffic (In/Out) counters are reported as null |
|
NHRP registration requests failed after ipv6 tunnel source change |
|
Willr noL3 tunnel MTU is not signalled properly for locally-originated packets |
|
ASR 903 - Crash on "BGP Open" Process During IPv6 ND Cache Lookup |
|
GOS contains an outdated, vulnerable version of the OpenSSH server |
|
IR829: Router unexpectedly shuts down after some period of operation |
|
IR829 Bundle install fails with SSH source interface configured |
|
IR8x9 need to reload router once VDS lost connection |
|
Serviceability: PoE accessory on IR829 should be in show inventory |
|
VDS partition1 corruption should not initiate reformat of partition2 through 6 |
|
To track monolith changes for uc_infra-CSCuz14236 |
|
1k tunnels stay down after shut/no-shut tail-end loopback |
|
2nd isis instance crashes after configuring new connected-prefix-sid-map due to no instance PDB |
|
5 sec packet drop for Auto-Tunnels with TI-LFA |
|
Bogus router id is advertised in LSP if isis_rrr subsys is not installed |
|
Changing prefix-sid is not reflected on local LFA's repair path |
|
incorrect flag in redist rib for connected routes causes mpls ping to fail |
|
IPv6 loopback address not being advertised in isis |
|
ISIS Authentication TLV NOT included in initial version of LSP |
|
isis redist rib not getting cleared after disabling segment-routing |
|
ISIS removing all connected ipv6 prefixes when removing 1 ipv6 scope |
|
ISIS RIB and Global RIB out of sync resulting in complete traffic loss |
|
ISIS route oscillation due to ldp sync and interface max metric |
|
ISIS SR TE tunnel destination has no repair path |
|
issue in show isis nei detail |
|
memory leak seen after doing config/deconfig segment routing under isis |
|
Router crashes upon clearing isis process |
|
SPF on adjacency down must wait for LSP GEN |
|
TB when 'no router isis' executed after changing 'is-type' |
|
TE tunnel should not be used for repair path |
|
Traceback @__be_isis_age_one_lsp_chain when we un-configure NET-ID after site bridge-domain bringup |
|
Traceback seen in ISIS when interface shut/no shut happens. |
|
Tracebacks after isis config removed |
|
Undebug all not clearing default debug, ISIS SPF timing debug is enabled |
|
%SYS-2-INTSCHED: 'sleep for' at level 3 -Process= "ISDN" |
|
4 byte garbage in packets bridged from VDSL |
|
C841's gig port display "10/100BaseTX" by show interface status |
|
C841M PPP LED turns off even if one PPP up session exists |
|
Fa0 port shows at C899G platform |
|
"Show controller VDSL 0" output is hanged with VDSL2-LINE-MIB |
|
ENH: Unable to Disable LLDP on L3 interface in 881C router |
|
C897: Unresponsive to SNMP queries |
|
Commit pond2/golden warrior module firmware to t_base_6 |
|
MTU issue - ping drop with larger MTU on peer |
|
"analysis-module monitoring" command missing for EHWIC UCS-E- variants. |
|
"show inventory" is not showing the SFPs |
|
C2911: trunk allowed vlan on the port connted to switch module can't up after power cycle |
|
Connectivity issues on shutting down sub-interfaces with dot1q |
|
Fine tuning of Tx interrupt coalescing in c3900 when tx-ring 4 |
|
only ipbasek9 not shaping on 15.5(3)M3 |
|
Output queue wedge due to Media forking |
|
Packet loss on directly connected neighbor when Q-in-Q is configured |
|
rj45-auto-detect-polarity enable/disable behavior and shut/noshut timing |
|
Wrong new lines placement in power consumption information |
|
EHWIC-4ESG leaked MAC Address table entries |
|
[Firebee-to-WAN IGMP Snoop] Ports fwd traffic though there are no rcvers |
|
Crash in "mac auth bypass" SNMP code |
|
Crash in ADSL DMT SNMP code |
|
Crash in ADSL SNMP code |
|
Small buffers leak with PPP |
|
tftp-server command is Mandatory for SM-X-1T3/E3 on ISR-G2 Platforms |
|
"no ip routing" + "ip default-gateway" config issue on C888-K9 device |
|
ALIGN-3-SPURIOUS Errors due to ATM OAM |
|
ATM config lost due to nbar |
|
Ping to GLBP VIP does not work after reloading the router. |
|
POE on SM-ES2-24-P with 2911 router dropped after IOS upgrade. |
|
crash on l2tp_session_get_soczket_type |
|
CWS + NVI NAT not working for web traffic |
|
4K UCI Phase2: Crash @ lisp_dyn_eid_instance_route_update when changing to default vrf |
|
Cat3k: High CPU and Memory utilization seen after deleting eid-table on fabric edge node |
|
ipv6 lisp etr map-server key xxx hash-function sha2 is lost from cpe config upon reload |
|
lisp cli nvgen for default table instance id |
|
LISP DDT: crash on removal of 'ddt' configuration |
|
LISP DDT: NMR for site EID prefix is returned for non-registered EIDs |
|
LISP to OSPF redistribution failing |
|
LISP: after locator vrf cfg toggled on xTR, registrations via UDP |
|
LISP: Discovered dynamic-eid is deleted after one missed eid-notify |
|
UCI-4k: Lisp Assert @ lisp_os_rib_watch_start with vrf delete and traffic loss with re-config |
|
Unable to apply Service-Policy with NBAR Protocol Pack 28.0.0 |
|
Cisco device may crash following MFIB errors |
|
CPU HOG and Crash by MFIB_rate |
|
NIGHTLY Build FAILED for 15.6T (t_base_6) |
|
ASR1k configured as PxTR crashes when booted with 16.5.1 image at LISP fwd background process |
|
DNA/SA,Upon Quad SUP SSO,Mcast decap traffic black holing for ~50 sec |
|
UCI,On QuadS6T Second SSO,PIM joins are not encapsulating over VRF LISP |
|
IWAN auto-tunnel - incomplete adjacencies on ISR G2 |
|
Unexpected reboot with NAT and Multicast configured |
|
Accounting Stop not sent for PMIPv6 tunnel in LMA |
|
Ignore home address is broken in MAG/LMA |
|
ISR4K routing using PMIPv6 enabled PBR over BGP |
|
Loadbalance feature broken and a crash seen with hybrid access |
|
MAG crash with traffic on and home interface config is removed |
|
MAG not advertising MNPs learned via BGP |
|
Need to support SSMO Label format as per 3GPP TS 23.003/RFC 5149bis |
|
SLA probes failing with NAT in pmipv6 haccess feature |
|
SSH / Telnet / Console freezes while bringing up PMIPv6 tunnel interface |
|
Profile 3 created after FW upgrade from Vzw to ATT |
|
SIM in slot 1 is not detected during boot-up on c819 routers |
|
ALIGN-3-TRACE during boot on ISR-G2 |
|
ASR 1K Running IOS-XE 3.16S w/ MPLS Crashes on 'clear ip route *' |
|
MRCP V2 logging tag support |
|
MRCPv2 response fails with NULL string in middle of packet |
|
PAT entry using the same port which is configured for static NAT |
|
VRF+PBR+NAT would not work with CEF |
|
681985688 - CPP ucode crashes at ESP20 / 16.03.02 |
|
Custom App TC marked with two DSCP values |
|
Running command "show policy-map interface" or "show tech nbar" can cause crash |
|
stile_dns_parser may cause sporadic crashes |
|
3945 crash on flapping tunnels with traffic |
|
4431 crashes with IWAN configuration showing CENT-BR-0 mallocs |
|
branch MC memory corruption and couple of crashes with syslog TCA |
|
CENT: branch MC crashed at cent_pdp_msg_send_from_pickexit |
|
CLI to disable PFR branch to branch PFR optimizations |
|
collector cfg missing after border shutdown/no shutdown |
|
Crash on IWAN Hub when TC is uncontrolled and current channel is present |
|
Fatal Alignment Error Crash with Smart Probe Processing |
|
incorrect statistics regarding bandwidth utilization at each BR |
|
iWAN Border Router not connecting with Hub Transit MC |
|
Memory Leak due to cent_rt_eigrp_nh_convert |
|
Memory leak in Chunk Manager (List elements) in iWAN set-up |
|
PfR exports not sent to new Collector IP, when collector is modified on the fly |
|
PfR Monitoring do not display VRF101 data and reports FVRF incorrectly |
|
PFR: unexpected Syslog Reason=Uncontrolled to Controlled Transition |
|
PfRv3 Auto-Tunnel Bandwidth reported as 10Mbps |
|
PfRv3 Channels Not Deleted Once TC is Removed |
|
PfRv3 MNH not moving traffic from OOP Link |
|
PfRv3 Password is overwritten by the global password, "password encryption aes" |
|
pfrv3: config 0SLA capability to 0 on branch, chans still not disabled |
|
PfRv3: Crash Observed While Checking/Modifying Channel Prefixes |
|
PfRv3: Crash While Updating/Deleting Parent-Route Reference |
|
PfRv3: Internet TC Not Created Due to Site-ID Timing Out |
|
PfRv3: Multiple TCAs Logged Simultaneously May Lead to Crash |
|
PfRv3: No Traffic-Classes Learned on Branch after Enabling Zero-SLA |
|
PfRv3: Site-Prefix Publishing May Fail In Certain Scenarios |
|
PI28: snmp index: -1 and dst-site-id is 0.0.0.0 for egress TC export |
|
show ip route overrides pfr does not work correctly with 16.3.3 CCO |
|
Site-prefix learning: Prefix withdrawal not working for hub-> branch on 16.6 |
|
Status up / down needs to be clarified in route-import output |
|
The clock-rate matrix should be zeorized to dynamic payload types |
|
XE316: route change export interface snmp output is wrong |
|
ASR 1k NHS Fallback fails for NHRP on secondary path |
|
DMVPN: Implicit NHRP Entry Persists if Crypto Fails to Build |
|
DMVPN: NHRP route-watch does not delete NHO route after route change |
|
FlexVPN:Spoke-spoke tunnel built over static tunnel instead of v-access |
|
High CPU due to NHRP when NHRP cache entry for remote spoke's tunnel address is deleted |
|
ISR4331 crash due to NHRP running 03.16.03.S |
|
NHRP debugs should state reg accept/reject with reason |
|
NHRP registration request non-compulsory experimental extension gets dropped |
|
Overriding the static nhs mapping with multicast doesn't take effect |
|
QoS Policy flap with every registration when NAT is involved |
|
Routers running IOS-XE may crash with Process = NHRP |
|
VA stuck in protocol down state after failing to establish IPSec session |
|
"no ntp allow mode control" does not seem to be working |
|
After disabling NTP device drops all mode 6 NTP packets due to 'MODE_CONTROL ratecontrol' |
|
CLI Knob for handling Leap second Add/delee ignore/ handle |
|
CVE-2016-1550: NTP security against buffer comparison timing attacks |
|
Evaluation of all for NTP June 2016 |
|
Evaluation of all for NTP November 2016 |
|
Evaluation of NTP Trap Vulnerabilities |
|
Leap second is being set in spite of leap ignore being configured |
|
NTP leap second addition/deletion for consecutive leap months not working properly |
|
NTP leap second failure to insert after leap second occurs |
|
SNMP crashes getting ntpAssociationEntry with low/fragmented memory condition |
|
Crash in BGP due to regular expressions |
|
CSCus79699 broke top allocators in crashinfo |
|
Protect LC crash@ A critical process ubrclc_k9lc_ms has failed (rc 139) |
|
Modifying "logging queue-limit" may result in unexpected reset |
|
ASBR summary Routes are filtered in RIB |
|
ASR1006 crash in ospfv2_print_db_simple on cmd "sh ip ospf retransmission-list" |
|
ASR920:OSPF SR PADJ: Protected adj sid not showing when repair path is not available |
|
IGP-LDP sync interoperability for OSPF multi area adj |
|
MFI_LABEL_BROKER-3-INVALID_PARAM Traceback message on change of unnumbered to numbered IP address |
|
Old Constrained Node Sid not getting deleted from MPLS forwarding table on changing SID |
|
On unshutting one of the ECMP link, packets starts puting to ROUTING THROTTLE Q due to INCOMP ADJ. |
|
OSPF allocates extra size when sending HELLO's with cryptographic authentication enabled. |
|
OSPF distance command does not work for newly added entries in ACL |
|
OSPF failed to assign labels for prefixes after back to back SSO |
|
OSPF FRR: repair path programming in FRR is wrong when we unconfigure L2 medium p2p from the i/f. |
|
OSPF IPFRR: cost of Ext2 external route repair path is wrong when node protection is enabled |
|
OSPF IPFRR: default policy not applied when all configured tiebreak policies are deleted |
|
OSPF NodeSRLG: repair path not correctly done with node protection. |
|
OSPF not redistributed after reconfiguring ospf process |
|
OSPF P-adj: segmentation fault in OSPF, when we unconfigure the IP address and ospf parameters. |
|
OSPF p-adj: show tech ospf does not show the "show protected-adj" command. |
|
OSPF P-ADJ: When protection disabled and enabled, p-adj sid comes up with repair path. |
|
OSPF P-ADJ: When protection is disabled on an interface, p-adj sid is not removed. |
|
OSPF P-ADJ: When SR is disabled and re-enabled on NBR, p-adj sids are created without repair path. |
|
OSPF PADJ: p-adj sid is not getting created when OSPF route becomes best route in RIBv4. |
|
OSPF PADJ: N-flag is not set for Node-SID, protected adj sid not created |
|
OSPF PADJ: p-adj sid not cleared in MADJ interface even after no seg mpls is given. |
|
OSPF PADJ: p-adj sid not created when multicast-intact is configured OR repair path not present. |
|
OSPF retransmit behaviour issues |
|
OSPF RLFA: rlfa/tilfa repair paths are not accurate in topologies with unequal cost parallel links. |
|
OSPF Rogue LSA with maximum sequence number vulnerability |
|
OSPF route issue from interface vlan 1 |
|
OSPF SR ADJ: When i/f changed from unnumbered to numbered, MFI_LABEL_BROKER-3-INVALID_PARAM error |
|
OSPF SR PADJ: multiple ELL lsas are generated when repair path changes |
|
OSPF SR PADJ: not all protected adj sids are deleted on ipfrr deconfig |
|
OSPF SR PADJ: p-adj sid not created when router id is changed in the nbr. |
|
OSPF SR PADJ: prot adj deleted immediately when intf is shut |
|
OSPF SR PADJ: prot adj destroyed even when nbr is reachable |
|
OSPF SR PADJ: prot adj sid not created when nbr node sid not avbl. |
|
OSPF SR PADJ: prot adj sid not created with parallel links |
|
OSPF SR PADJ: prot adj sid not created with SRMS configured SID entries. |
|
OSPF SR PADJ: prot adj sids not created when no nbr has repair path |
|
OSPF SR PADJ: protected adj events are lost at times |
|
OSPF SR PADJ: protected adj repair path not updated after nbr going down |
|
OSPF SR PADJ: protected adj SID change is not conveyed to TE App |
|
OSPF SR PADJ: protected adj sid is deleted too soon from datapath |
|
OSPF SR PADJ: protected adj sid is not deleted when ipfrr i/f shut |
|
OSPF SR PADJ: tilfa repair path should not use protected adj sid |
|
OSPF SR PADJ: When FRR is not configured, the p-adj sid is still created. |
|
OSPF SR PADJ: when p-adj sid removed, it is not withdrawn from SRTE. |
|
OSPF SR SID Conflict: when OSPF is shut, conflict resolution not handled |
|
OSPF SR TE: SR TE tunnel does not come up after SO and enabling SR in area |
|
OSPF SR: opaque LSA (with prefix sid) not to be fwded on stub wit no sum |
|
OSPF SR: opaque LSAs for areas not cleared from database in some cases. |
|
OSPF SR: When intra prefix is changed to inter prefix, the prefix resolution happening wrongly. |
|
OSPF SR: When the neighbor is not SR enabled, OSPF should not install SR label path for nbr prefix. |
|
OSPF SRTE : TLV is shown with 0 length and unknown type. |
|
OSPF SRTE: CSTR path is not installed in some cases properly. |
|
OSPF SRTE: memory corruption seen with SRTE and OSPF ... |
|
OSPF SRTE: Node SIDs are incorrectly treated as conflicting |
|
OSPF SRTE: Once nsr is enabled, OSPF does not provide TE parameters to standby SRTE process. |
|
OSPF SRTE: prefix resolution when more than 4 ECMP paths is not provided properly to SRTE. |
|
OSPF SRTE: SID is not installed when the SID route is learnt via SRTE. |
|
OSPF SRTE: when autoroute announce configured, tunnel not coming up |
|
OSPF SRTE: with multi area adjacency, the tunnels not coming up to the multi area instance. |
|
OSPF SRTE; When SRTE tunnel changed to RSVP TE tunnel with forwarding adja, links not advt by OSPF. |
|
OSPF TI LFA: repair path not calculated for AS ext routes. |
|
OSPF TILFA SCALE: On reopt or clearing OSPF process, no. of protected prefixes goes down drastically |
|
OSPF TILFA SCALE: with 2K Inter-area Prefix Scale, some non-ECMP routes are not getting protected |
|
OSPF TILFA: ABR has no repair path to AS-extern pfx from ASBR in area 1. |
|
OSPF TILFA: Crash in ospf_tilfa_p_space_check() on interface-id snmp-if-index config |
|
OSPF TILFA: inter-route withdrawn, no repair path for Ext2 computed |
|
OSPF TILFA: Load share flag wrongly set for DLFA paths in some cases |
|
OSPF TILFA: Micro-loop avoidance is not enabled by default when TI-LFA is enabled |
|
OSPF TILFA: no repair path for inter-area prefix after SR disabled/enabl |
|
OSPF TILFA: parallel p2p adj-sid links - not all repair paths are used |
|
OSPF TILFA: repair path not installed for summarized inter-area routes. |
|
OSPF TILFA: show command incorrectly reports Protection "Not Required" |
|
OSPF TILFA: Wrong Ext1 repair path via src tunnel, which is not loop free alternative |
|
OSPF: IPFRR repair path computation stopped after receiving type 10 opaque EPL lsa. |
|
OSPF: mapping server entries used after route replaced in RIB. |
|
OSPF: Not able to remove ospfv3 config under Virtual-Template |
|
OSPF: When anycast present in two areas, when one area is removed, rout not getting installed in RIB |
|
OSPFv3 IPSEC socket session is not coming up after reboot |
|
OSPFv3: IOSXE-WATCHDOG forced router crash @ospf_dbd_adj_state_check |
|
rLFA tunnel to wrong PQ node after int removed from protection candidate |
|
Router Crash in ospf on removal of vrf config twice |
|
SRTE: Single hope tunnel doesn't install any repair path. |
|
SRTE: when i/f address is removed, traceback is seen and adj-sids not destroyed. |
|
TILFA : inter-route withdrawn, suboptimal repair path for ext computed |
|
TILFA : repair path not created for NSSA learnt external routes. |
|
TILFA: "node prot reqd" not working for intra routes hosted on ASBR |
|
TILFA: repair path for AS ext not calculated correctly when multipl ABR |
|
TILFA: repair path for AS ext not calculated when learnt from 2 ASBRs. |
|
Tunnel & repair path continuously flapping on disabling SR on next node from head-end. |
|
Crash seen in c5930 and c5940 during manet test |
|
Router loses RSA keys upon boot with private-config encryption and config archive enabled |
|
Error message "LID: Handle 0x0 is invalid" filling console logs |
|
PFR Sync Issues between MC and Border router ,active probes are missing on border router randomly |
|
PfRv2 stream keep remaining in DEFAULT state |
|
PFRv3 border will learn master prefix When the package is fragments. |
|
3.18.1.SP modem/s stuck in reject(pk) with PKI-3-CERTIFICATE_INVALID log message |
|
AN: PKI crash during boostrap and certificate renewal |
|
Auth and CRL download fails with "There is another request in progress" |
|
Client auth and enroll to subca fails |
|
crash after multiple renew |
|
Crash during CRL fetch failure |
|
Digital certificates does not sync to standby |
|
During PKI enrollment, Cisco router rejects CA/RA reply containing HTTP 500 "Internal Server Error" |
|
EST client pki authentication request goes out to default URL always |
|
EST client pki simpleenroll request goes out to default URL always |
|
IOS CA Server unable to read CRL file accessed over ftp/tftp after CRL file reaches a certain size |
|
IOS PKI: Traceback in PKI component during TCL script validation |
|
PATH validation for Trustpoint configured with Enrollment via SCEP |
|
PKI Certificate Importing Fails with Trailing Whitespace in PEM Body |
|
PKI Rollover: rollover cert is being added as active id cert |
|
PKI Server: "Rollover RA Certificate" Becomes "Rollover ID Certificate" After Reload of Router |
|
PKI unable to enable PKI debugs immediately after system boot |
|
PKI: Cannot import RSA SubCA signed by ECDSA |
|
retry does not work in one scenario after renewal fail |
|
roll over to new certificate triggers "Crypto CA" to crash |
|
Router crash due to PKI process |
|
Sessions come up using rsa-sig certificates when ecdsa auth is used |
|
Crash due to memory corruption when using PNP feature |
|
Customer POC- Autoinstall obtained IP overrides USB bootstrap config |
|
Non-Vlan1 did not get initiated with pnp startup-vlan conf after reload |
|
unexpected pnp config-upgrade crash due to stale csb |
|
16.3 throttle: serial interface goes down after enabling ppp |
|
Crash seen while unconfiguring CPU_MLPPP configs |
|
MTU of the PPPoE Dialer interface resets to 1492 while doing any change in the MTU config |
|
ppp ms-chap refuse don't work |
|
RFC 5515: Interface and session values are not synced to the standby |
|
Router crashes at ic_dp_classify when Serial link flaps |
|
SEND CONFACK to IPCP option having no ip |
|
show memory summary includes garbled characters |
|
show ip nbar protocol-discovery issue |
|
'sh police int' hidden command causes RP to crash |
|
FIB has extra prefix when BGP and OSPF receive the same route |
|
filtered secondary route per vrf for BGP or EIGRP using MTT |
|
SR:RSP2:Object download failure(EOS object)error seen randomly |
|
tableid_ha: Memleak @ eobc_pool_getbuffer |
|
Prefixes missing under channels for spoke |
|
Cisco SIP Gateway adds port 5060 to contact header in response |
|
SIP SRST phone registration issues. |
|
Counters not getting incremented for HTTP OID's like rttMonHTTPStatsDNSQueryError |
|
Crash while deleting an ip sla scheduler group attached to a live probe |
|
C-Agent retries sending registration when it should not |
|
Coverity 114197: FORWARD_NULL in buildTrustChain |
|
HTTP SSL crash in ISRv |
|
PLR Res mismatch when Active is not PLR is enabled but standby is |
|
PLR: Smart Agent attempts to validate auth code when PLR is not enabled |
|
Reservation return then reboot == authorized |
|
Smart license turns to EVAL EXPIRED after reload from SUP1 |
|
Smart licensing traps are missing in 16.5.1 |
|
Timing condition leads to no PKI certs after reload of CSR1000v |
|
Last Renewal attempt showing "None" status after successful renewal |
|
Caching skipped for p2p interfaces |
|
CTS/SGT across GRE p2p tunnel broken when doing inline tagging |
|
Fatal Alignment Error Crash Due to Corrupted PC with SMEF |
|
Router actin as HPR/SNA node crash every 2 hours |
|
Dial-peer stats poll cause SNMP high CPU if 500+ dial-peers configured |
|
Middle Buffer I/O Leak On Dialer/Virtual-Access Interface from SNMP Polls |
|
Router crash when polling NOTIFICATION-LOG-MIB |
|
Cisco IOS and Cisco IOS XE Software TCP Denial of Service Vulnerability |
|
Cisco IOS/IOS-XE SSH local username enumerationTime-Based Attack |
|
Router may crash during SCP copy over WSMA |
|
SSH logs showing empty username on successful authentication |
|
SSH session hangs if its not closed properly |
|
CSR Mobile client's Radius auth failure triggers crash |
|
IOS memory leak when using webvpn |
|
IOS SSL VPN stuck reverse route blackholing IKEv2 connections |
|
Memory leak in SSLVPN_PROCESS due to VTEMPLATE Background Mgr |
|
Radius Accounting information failure in attribute: Acct-Input-Octets and Acct-Input-Packets |
|
tcp_getbuffer memory leak - refcount not reduced when packet dropped |
|
Crash in TN3270E-RT-MIB code |
|
Down change delay expired of track, without counting delay down time |
|
IOSd crash on LISP enable router |
|
TPM reserves UDP/4500 for no apparent reason |
|
Router crashes when trying to assign an bridge-goup |
|
Router crashes when running the csim start command |
|
CUBE e164-pattern-map doesn't parse the last line of the config file |
|
show dial-peer voice summary not showing server groups |
|
voice-class busyout command removed after reload |
|
ISR 4321 unexpected reload on h450ProcRcvdApdus |
|
ISR4xxx router crashed due to voice IVR script - AFW_application_process |
|
Preventive fix for crash in AFW DataList |
|
Add plc configuration CLI for tdm voice and dspfarm |
|
Hung Transcoder sessions in complex call flows |
|
IOS-XE CFB fails with error "Send negative ack to CCM" |
|
ISR 4451-X crashed with "Segmentation fault(11), Process = DSMP" |
|
multiple ISR4K VGW's crashed with Segmentation fault(11), Process = DSMP |
|
RTCP enabled after t38 switchover, leading to t38 fax failure |
|
Transcoders in ISR4451 can't open the media port |
|
SWMTP route T.38 UDPTL Seq=65,72-79=RTP_Payload to (RTP UDP+1)=RTCP port |
|
voip_rtp_allocate_port:Possible port leak? , when call goes on hold |
|
add new cas-custom CLI clear-bwd-in-seize for E1-R2 |
|
Add warning message for VG310P/VG320P when dowloading older versions of IOS pre-15.6(3)M |
|
Code change for CLI "bootup e-lead on/off" for NIM-4E/M port |
|
removed DC from NIM-FXO card and SM-X-FXS/FXO |
|
ASSERTION FAILED : ..vtsp.c: vtsp_cdb_assert: then crash |
|
Caller continue to hear ringback tone even after agent answers call. |
|
Crash on sstrncpy with null pointer |
|
Router crashing due to a watchdog in the ISDN process |
|
'Referred-By' header missing in Invite while 'session server-group' is used under dial-peer |
|
2951 crash due to Null Pointer Dereference |
|
Call disconnect on SIP GW for FPI Hung connection for signaling forking |
|
CCSIP_SPI_CONTROL memory usage leads to crash - SIP subscribe messages |
|
Cisco Router 2921 sending cisco-rtp payload 121 for RFC2833 (rtp-nte) instead of 101. |
|
Cisco Router may crash on SIP MA Process Due to sstrncpy() |
|
Crash while localhost CLI disabled with Options keepalive |
|
CUBE-161: S3: 639020025: Multiple SIP/SDP Spurious Crashes//2951//15.5(1)T3 |
|
DATACORRUPTION-1-DATAINCONSISTENCY error when copying from PAI header |
|
Extend the clear FPI command to SIP-TDM cases |
|
Invaild Session-ID header in ACK for Authentication |
|
ISR 4K Crashes When Running "Debug Voice Translation" |
|
ISR4351 running denali 16.3.3 crashes in AFW_application_process |
|
One-way audio on held-resumed calls after 20 mins |
|
Path header not included in 2nd REGISTER with authorization |
|
Processor pool leak due to CCSIP_SPI_CONTROL |
|
QSIG call redirection fails when using session server-group in dial-peer |
|
Router crash while running SIP debugs |
|
Sip profile does not copy the second varible in INVITE message |
|
SIP Timer Expires gets into 0 unexpectedly |
|
Cayuga: GUID sent as 0x00000000 in the outgoing WSAPI messages from CUBE |
|
MGCP ISR4K does not advertises V150 Capabilities for T1 CAS trunks. |
|
GW may crash at mc_waitq_unlink |
|
HTTP 304 response causes mc error and bad magic |
|
MRCP - DTMF issue |
|
SIP session between VXML GW and the Nuance server remains active after callback (CCB) is scheduled |
|
TLSv1.2 support for VXML gateway browser API |
|
VXML gateway crash playing mixture of g711 & g729 prompts |
|
VXML gateway randomly tear down TCP/HTTP link between CVP |
|
VXML GW IVR memory - active queue hold memory when clean http cache |
|
VXML GW IVR memory get nagative number if memory usage exceed configured value |
|
2 extra Interim Accounting messages sent after SRL service activation |
|
PPTP Start-Control-Connection-Reply packet leaks router memory contents |
|
WebUI: Tacacs not sending username with command authz/acct |
|
Crash dump is not working on 3G/4G modems(non-M74xx) on ISRs. |
|
Incoming SMS not showing syslog messages IOS 15.6(2)T |
|
Add recovery mechanism in Linux_app to auto recover |
|
C897VAGW-LTE-GAEK9 crash with 15.6(3)M2 |
|
Eagle 5, 6: Using Cell 1 0 FW upgrades Cell 0/0 modem |
|
Error - Unknown physical layer while defaulting the cellular interface |
|
Implement chat abort in case of cellular call establishment failure. |
|
IOS crash after upgrading EHWIC-4G-LTE-A ( MC7700 ) |
|
IR800/CGR1k 4G LTE: MC73XX modem FW cannot be upgraded on 15.6(3)M1 image |
|
Router crash with %SYS-6-STACKLOW in ehwic cellular process |
|
UA: BOLT: 819gw-7430: Traceback and router crash with mpdn cli |
Open Bugs—Cisco IOS Release 15.7(3)M
Caveat ID Number |
Description |
---|---|
Crah seen @ trigger_auth_command |
|
RFC: BGP sending error sub-code: 8 instead of '4' |
|
router crash when perform ipv6 vrf vr-clients command |
|
memory leak in cce_dp_sb_pak_subblock_process_create |
|
router crash in qos acl check |
|
CGNA: Lack of input sanitization during memory allocation |
|
CGNA: Not able to apply config when there is only Cellular interface |
|
ISR SIP CME crashes when "reset" command is used or after a reload |
|
Date SIP header in CME is empty |
|
Device Based BLF monitoring stops working after subscription expires in CME |
|
Router crash @ SkinnyAddMediaMohClient |
|
Transfer to voicemail not working because ephone-dn virtual/internal dial-peer is down |
|
ISM crashes when brought up as HSRP active router. |
|
ISR Router Crashes When Handling IPSEC Fragments, Bus Error at Address 0x20 |
|
I/O Leak in middle buffer from SNMP Polls |
|
Router getting hang after reload when using static NAT |
|
Crash observed in DHCP SIP |
|
Packets are intermittently dropped with dialer aaa |
|
'clear plat cond all' not clearing DSA debug sub modes previously set |
|
Memory leak under HTTP EPM Redirect Daemon |
|
Unable to ping hosts across stack members after ISE authentication |
|
unplug cable or shut interface trigger EIGRP loop to crash router over LISP with tunnels. |
|
Cisco IOS and IOS XE Software EnergyWise Denial of Service Vulnerabilities |
|
Router crash after tunnel interface goes up and BGP adjacency is set up |
|
SCEP enrollment failing with HTTP/1.1 500 Internal Error |
|
Memory leak under Chunk Manager / Firewall State |
|
static route is not getting redistributed into RIP database |
|
CUBE does not do session refresh while in mid call signalling passthru mode (3945/15.6(2)T) |
|
CUBE no DTMF after transfer to UCCX when midcall-signaling passthru media-change |
|
CUBE resets SSRC to 0 leading to DTMF failure on 3rd party IVR |
|
CUBE sends SIP Invite with incorrect Req-URI when using SIP Server group |
|
In-dialog options ping received post ACK (call completion) cause cube to change codec and no audio |
|
"sh crypto gdoi gm data counter" randomnly increases after REKEY |
|
IKEv2 CREATE_CHILD_SA REKEY_SA may fail with specific transfrom order and INVALID_KE_PAYLOAD |
|
IKE_INIT is sent before PPPoE dialer obtains its IP address |
|
IPsec: Missing Crypto Ruleset Entries Causing Tunnel Failure |
|
Map doesn't get updated with socket change on local address change |
|
FlexVPN not working when upgrading IR800 from 15.6(3)M1b to 15.6(3)M2 |
|
IKEv2 IETF Frag: IPV6 Ikev2 incorrect Frag MTU used when set to default |
|
IKEv2 IETF Frag: Tunnel negotiation fails in IKE AUTH with lower value of MTU |
|
Fixed versions for CSCuz15131 crash when traffic with maximum size is on wire |
|
IPv6 ESP traffic incorrectly dropped after decryption by IPv6 interface access-list |
|
Locally generated traffic may be dropped in a GETVPN over DMVPN setup |
|
After a hard reset of IR829, containers are not reachable from GOS |
|
IR809G serial s0 RS485 violates Modbus specification |
|
ISDN Datetime message CLI |
|
819 advertises MACs learned from AP802 back to AP802 |
|
ISR 8xx - High CPU Due to "Async write proc" During Hung Filesystem Operation |
|
C2900 with ISM-VPN-29 - 15.5M - wrong interface "input rate" with GET/crypto traffic |
|
Memory alignment error by m8500 interrupt |
|
Trunk port as receiver port receives more traffic than sent in IPv6 MLD |
|
ASR1K/RP2/SW 15.4(3)S4 crash |
|
Memory leak due to LDAP process. |
|
Chunk Corruption Crash with MACE Configurated |
|
igmp ssm-map in VRF does not use the VRF name-server |
|
CPUHOGS in chunk corruption crashinfos distracts troubleshooting |
|
A host translated to an IP via Dynamic 1-1 NAT, is not being be mapped to another IP |
|
Route-map for static nat statement gets removed by itself |
|
Small chance of IOS crash on "show run" with static NAT configured |
|
NBAR: export sys call is not protected from export of length 0 |
|
Continuation of Crash from CSCux96341/CSCvc34452 |
|
PfRv3: Crash in Route-Control Process |
|
ASR1002-X Router crashed on 'Parent still holding tunnel subblocks after delete' |
|
show buffer peak usage timestamp stuck at 7w0d |
|
3750x - dACL in multi-auth not updated for dot1x client |
|
Switch fails to apply DACL after master reload |
|
IOS PKI: Syslogs should be generated when OCSP server is unreachable |
|
SSLVPN: Gateway accepts Client Public Cert with CA:TRUE (security hardening) |
|
Cannot reapply service policy under tunnel interface. Tunnel interface sourced using sub-interface. |
|
Traffic export (RITE) corrupts the copied packets received on a vDSL/PPPOE interface |
|
Machine Check Exception due to bus errors should generate crashinfo |
|
Auto ip sla probes tags doesn't work |
|
SNMP responds from network and broadcast addresses |
|
Crash in Voice Dialpeer Number Expansion MIB code |
|
Crash in Voice DNIS SNMP code |
|
Media loop detection failure |
|
show voice saf dnDb all output is not correct |
|
Audio stream is lost from Gateway once it receives mid-call Re-inivte CUCM |
|
media activity drops calls on hold if RTP/all receive criteria is configured |
|
Memory exhaustion in CCSIP_SPI_CONTRO process |
|
SCB Memory leak reported in the CCSIP_SPI_CONTROL process |
|
Standby CUBE crash when Active CUBE is reloaded |
|
TDM gateway rejects Sip info message, then sends an empty isdn facility message |
|
Cube doesn't send ack or forward 200 ok |
|
WCCP bypassed packets dropped by ACL on WAN interface |
|
UA_C819G: Mpdn Reverse Telnet Fails When Interface Cellular0 is Active |
|
TCP stuck in CLOSEWAIT when using X25 PVC RBP |