PT-2013-2989 · Cisco · Cisco Nx-Os+1
Publicado
2013-04-29
·
Atualizado
2013-04-29
·
CVE-2013-1226
CVSS v2.0
6.1
Média
| Vetor | AV:A/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco NX-OS versions on Nexus 7000 devices (affected versions not specified)
Description
The issue is related to the mishandling of nonstandard Ethernet frames by the Cisco NX-OS software, which can be exploited by an unauthenticated, remote attacker with access to an adjacent network. The attacker can send a crafted nonstandard Ethernet frame to the targeted device, causing a frame forwarding loop and resulting in a denial of service condition.
Recommendations
To resolve the issue, update the Cisco NX-OS software to a version that includes the fix for this vulnerability.
As a temporary workaround, consider restricting access to the adjacent network to minimize the risk of exploitation.
Avoid using nonstandard Ethernet frames in the affected software until the issue is resolved.
Correção
DoS
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Nx-Os
Cisco Nexus