PT-2013-2989 · Cisco · Cisco Nx-Os+1

Published

2013-04-29

·

Updated

2013-04-29

·

CVE-2013-1226

CVSS v2.0

6.1

Medium

VectorAV:A/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco NX-OS versions on Nexus 7000 devices (affected versions not specified)
Description The issue is related to the mishandling of nonstandard Ethernet frames by the Cisco NX-OS software, which can be exploited by an unauthenticated, remote attacker with access to an adjacent network. The attacker can send a crafted nonstandard Ethernet frame to the targeted device, causing a frame forwarding loop and resulting in a denial of service condition.
Recommendations To resolve the issue, update the Cisco NX-OS software to a version that includes the fix for this vulnerability. As a temporary workaround, consider restricting access to the adjacent network to minimize the risk of exploitation. Avoid using nonstandard Ethernet frames in the affected software until the issue is resolved.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-1226

Affected Products

Cisco Nx-Os
Cisco Nexus