Loading...
Loading...
IOS XE may experience problems with export of ISIS SRLG TLV 138 to LSLIB/BGPLS. Problems are usually seen on scale, when LSPs consist of multiple fragments. Experienced problems include: - SRLGs are sent to LSLIB only if in the same LSP like extended neighbour TLV. SRLG info may be missing in LSLIB. - If SRLG TLV gets fragmented and split into multiple TLVs, only last TLV is sent. Therefore SRLG data in LSLIB may be incomplete. - In case of parallel links, SRLG can be associated with wrong link(s). It results into incorrect LSLIB data.
Network runs ISIS. SRLGs are configured and advertised. It means interface configuration includes ISIS, SRLG and MPLS TE configuration: interface ip router isis srlg gid mpls traffic-eng tunnels ISIS is configured to export link-state database to LSLIB/BGPLS router isis distribute link-state
None.
ISIS is PI component, all platforms are affected. All releases without fix are affected. See conditions to evaluate if network is vulnerable. Very little networks if any will match all the conditions. PSIRT Evaluation: The Cisco PSIRT has evaluated this issue and determined it does not meet the criteria for PSIRT ownership or involvement. This issue will be addressed via normal resolution channels. If you believe that there is new information that would cause a change in the severity of this issue, please contact psirt@cisco.com for another evaluation. Additional information on Cisco's security vulnerability policy can be found at the following URL: http://www.cisco.com/en/US/products/products_security_vulnerability_policy.html
Cisco Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.