Cisco security advisory (AV26-876)
Canada's Cyber Centre relayed Cisco advisories covering a Nexus 9000 Silicon One RCE, IOS XR hardening, and denial-of-service flaws across IP phone lines.
The Canadian Centre for Cyber Security advisory AV26-876 lists Cisco vulnerabilities affecting IOS XR, Nexus 9000 Series switches, and several IP phone series. Included are a Nexus 9000 Silicon One remote code execution vulnerability, a September 2026 IOS XR security hardening release, and SIP software denial-of-service flaws in Desk Phone 9800, IP Phone 7800/8800, and Video Phone 8875. The Cyber Centre urges users and administrators to review the Cisco advisories and apply updates as they become available. No active exploitation is reported in the advisory.
- Nexus 9000 Silicon One remote code execution vulnerability disclosed
- IOS XR September 2026 security hardening release published
- SIP software DoS flaws affect Desk Phone 9800 and 7800/8800 series
- Canadian Cyber Centre urges administrators to apply Cisco updates
Full article135 words · extracted from cyber.gc.ca · click to collapse
Serial Number: AV26-876
Date: September 3, 2026
As of September 2, 2026, Cisco is affected by vulnerabilities in the following products:
- Cisco IOS XR Software
- Multiple versions
- Cisco Nexus 9000 Series Switches
- Multiple products
- Cisco Desk Phone 9800 Series and Video Phone 8875
- Prior to 5.0(1)
- IP Phone 7800 and 8800
- Prior to 14.4(1)SR3
- IP Phone 8845 and 8865
- Prior to14.4(1)SR4
- Wireless IP Phone 8821
- Prior to 11.0(6)SR8
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
- Cisco Nexus 9000 Series Switches Silicon One Remote Code Execution Vulnerability
- Cisco IOS XR Software Security Hardening Release: September 2026
- Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability
- Cisco Security Advisories
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/cisco-security-advisory-av26-876