CRS 16 slots chassis Enh. Upgrade Kit
CRS-16-B-UPG
Chassis
· carrier routing system Series
Is the CRS 16 slots chassis Enh. Upgrade Kit still supported?
No. Cisco ended support for the CRS 16 slots chassis Enh. Upgrade Kit on 2026-08-31. No further security fixes will be issued. See Cisco's lifecycle bulletin.
When does the CRS 16 slots chassis Enh. Upgrade Kit reach end of support?
Cisco support for the CRS 16 slots chassis Enh. Upgrade Kit ends on 2026-08-31.
What replaces the CRS 16 slots chassis Enh. Upgrade Kit?
Cisco has not published a successor model for the CRS 16 slots chassis Enh. Upgrade Kit.
What known-exploited CVEs apply to the CRS 16 slots chassis Enh. Upgrade Kit past end of support?
9 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform the CRS 16 slots chassis Enh. Upgrade Kit runs. These will not be patched on this device because it is past the Cisco security-support date. See the Known Exploited Vulnerabilities table below for the full list.
Known Exploited Vulnerabilities
This device is past Cisco's security-support date. 9 CVEs in CISA's Known Exploited Vulnerabilities catalog apply to the platform it runs. Cisco is not issuing patches for this model. Isolate, compensate, or refresh.
| CVE | KEV added | Vulnerability | Flags |
|---|---|---|---|
CVE-2016-6415
|
Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability | ||
CVE-2022-20821
|
Cisco IOS XR Open Port Vulnerability | ||
CVE-2010-3035
|
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | ||
CVE-2009-2055
|
Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | ||
CVE-2018-0175
|
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | ||
CVE-2018-0167
|
Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | ||
CVE-2020-3118
|
Cisco IOS XR Software Discovery Protocol Format String Vulnerability | ||
CVE-2020-3566
|
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | ||
CVE-2020-3569
|
Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability |
Source: CISA Known Exploited Vulnerabilities catalog. The Ransomware flag reflects CISA's own knownRansomwareCampaignUse field, set when the CVE has been observed in ransomware campaigns per their threat intel. It's not a property of the vulnerability description itself.
Correlation is at the platform level, not per-OS-version. Not exhaustive: KEV only lists actively-exploited CVEs and many relevant unexploited vulnerabilities are not here. Verify against vendor security advisories (PSIRT, JSA, PAN-SA) and NVD before acting. See compensating controls if refresh isn't immediate.
CRS 16 slots chassis Enh. Upgrade Kit Lifecycle Overview
The Cisco CRS 16 slots chassis Enh. Upgrade Kit (CRS-16-B-UPG) is a chassis product in the Cisco carrier routing system series. This product has reached end of life as of , meaning Cisco no longer provides technical support, software updates, or hardware replacement for this product. It was last available for purchase on . Organizations still running the CRS 16 slots chassis Enh. Upgrade Kit should plan a migration .
Lifecycle Milestones
| Lifecycle notice published | 5y 8mo ago | |
|---|---|---|
| End of sale | 5y 2mo ago | |
| Last order date | 4y 11mo ago | |
| End of software maintenance | 4y 2mo ago | |
| End of failure analysis | 4y 2mo ago | |
| End of security vulnerability support | 2y 2mo ago | |
| Last date of support | 1mo ago |
CRS 16 slots chassis Enh. Upgrade Kit