PT-2013-2989 · Cisco · Cisco Nx-Os+1
Published
2013-04-29
·
Updated
2013-04-29
·
CVE-2013-1226
CVSS v2.0
6.1
Medium
| Vector | AV:A/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco NX-OS versions on Nexus 7000 devices (affected versions not specified)
Description
The issue is related to the mishandling of nonstandard Ethernet frames by the Cisco NX-OS software, which can be exploited by an unauthenticated, remote attacker with access to an adjacent network. The attacker can send a crafted nonstandard Ethernet frame to the targeted device, causing a frame forwarding loop and resulting in a denial of service condition.
Recommendations
To resolve the issue, update the Cisco NX-OS software to a version that includes the fix for this vulnerability.
As a temporary workaround, consider restricting access to the adjacent network to minimize the risk of exploitation.
Avoid using nonstandard Ethernet frames in the affected software until the issue is resolved.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Nx-Os
Cisco Nexus