PT-2015-2242 · Cisco · Nx-Os

Published

2015-08-19

·

Updated

2016-12-28

·

CVE-2015-4301

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Cisco NX-OS on Nexus 9000 devices version 11.1(1c)
Description The issue is related to resource management errors in the NX-OS network operating system. It allows a remote authenticated user to cause a denial of service, resulting in a device hang, by copying large files to the device's filesystem.
Recommendations For Cisco NX-OS on Nexus 9000 devices version 11.1(1c), consider restricting access to the filesystem to prevent large file transfers until a fix is available. As a temporary workaround, limit the size of files that can be copied to the device's filesystem to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-11588
CVE-2015-4301

Affected Products

Nx-Os