PT-2016-6929 · Cisco · Cisco Application Policy Infrastructure Controller+1
Published
2016-11-19
·
Updated
2021-12-14
·
CVE-2016-6457
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) versions 11.2(2x) through 11.3(2x)
Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) version 12.0(1x)
Description
A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the affected device. This issue affects Cisco Nexus 9000 Series Leaf Switches (TOR) - ACI Mode and Cisco Application Policy Infrastructure Controller (APIC).
Recommendations
For versions 11.2(2x) through 11.3(2x), update to a fixed release such as 11.2(2i), 11.2(2j), 11.2(3f), 11.2(3g), 11.2(3h), 11.2(3l), 11.3(0.236), 11.3(1j), 11.3(2i), or 11.3(2j).
For version 12.0(1x), update to a fixed release such as 12.0(1r).
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Application Policy Infrastructure Controller
Cisco Nexus 9000 Series Platform Leaf Switches