ASR-9010-DC
Announced in: Cisco ASR 9000 Series Version 1 Power Bundles and Devices
Chassis
· ASR 9000 series
Is the Cisco ASR 9000 Series Version 1 Power Bundles and Devices still supported?
No. Cisco ended support for the Cisco ASR 9000 Series Version 1 Power Bundles and Devices on 2019-11-30. No further security fixes will be issued. See Cisco's lifecycle bulletin.
When does the Cisco ASR 9000 Series Version 1 Power Bundles and Devices reach end of support?
Cisco support for the Cisco ASR 9000 Series Version 1 Power Bundles and Devices ends on 2019-11-30.
What replaces the Cisco ASR 9000 Series Version 1 Power Bundles and Devices?
Cisco has not published a successor model for the Cisco ASR 9000 Series Version 1 Power Bundles and Devices.
What known-exploited CVEs apply to the ASR-9010-DC past end of support?
9 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform the Cisco ASR 9000 Series Version 1 Power Bundles and Devices runs. These will not be patched on this device because it is past the Cisco security-support date. See the Known Exploited Vulnerabilities table below for the full list.
Known Exploited Vulnerabilities
This device is past Cisco's security-support date. 9 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform it runs. Cisco is not issuing patches for this model. Isolate, compensate, or refresh.
| CVE | KEV added | Vulnerability | Flags |
|---|---|---|---|
CVE-2016-6415
|
Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability | ||
CVE-2022-20821
|
Cisco IOS XR Open Port Vulnerability | ||
CVE-2010-3035
|
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | ||
CVE-2009-2055
|
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | ||
CVE-2018-0175
|
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | ||
CVE-2018-0167
|
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | ||
CVE-2020-3118
|
Cisco IOS XR Software Discovery Protocol Format String Vulnerability | ||
CVE-2020-3566
|
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | ||
CVE-2020-3569
|
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability |
Source: CISA Known Exploited Vulnerabilities catalog. The Ransomware flag reflects CISA's own knownRansomwareCampaignUse field, set when the CVE has been observed in ransomware campaigns per their threat intel. It's not a property of the vulnerability description itself.
Correlation is at the platform level, not per-OS-version. Not exhaustive: KEV only lists actively-exploited CVEs and many relevant unexploited vulnerabilities are not here. Verify against vendor security advisories (PSIRT, JSA, PAN-SA) and NVD before acting. See compensating controls if refresh isn't immediate.
ASR-9010-DC Lifecycle Overview
The Cisco ASR-9010-DC (ASR-9010-DC) is a chassis product in the Cisco ASR 9000 series. This product has reached end of life as of , meaning Cisco no longer provides technical support, software updates, or hardware replacement for this product. It was last available for purchase on . Organizations still running the ASR-9010-DC should plan a migration .
Lifecycle Milestones
| Lifecycle notice published | 12y 3mo ago | |
|---|---|---|
| End of sale | 11y 9mo ago | |
| Last order date | 11y 6mo ago | |
| End of failure analysis | 10y 9mo ago | |
| Last date of support | 6y 8mo ago |