CVE-2026-20004 | Cisco IOS XE up to 17.16.1a Extensible Authentication Protocol missing reference to active allocated resource (cisco-sa-iosxe-tls-dos-TVgLDEZL / EUVD-2026-15426)
A vulnerability, which was classified as critical, was found in Cisco IOS XE. This vulnerability affects unknown code of the component Extensible Authentication Protocol. Such manipulation leads to missing reference to active allocated resource.
This vulnerability is referenced as CVE-2026-20004. The attack needs to be initiated within the local network. No exploit is available.
You should upgrade the affected component.