A specially crafted packet can cause the premature expiry of multicast forwarding state on affected interfaces, potentially resulting in temporary multicast traffic loss during the affected period.
The vulnerability is exploitable on interfaces with PIM Sparse Mode configured:
switch(config)# interface Ethernet1
switch(config-if-Et1)# pim ipv4 sparse-mode
There is no mitigation available to address this vulnerability.
The following EOS releases contain the fix:
- 4.33.9M and later in the 4.33.x train
- 4.34.8M and later in the 4.34.x train
- 4.35.6M and later in the 4.35.x train
- 4.36.2F and later in the 4.36.x train
No hotfixes are available for this issue.