Lucene search

K
ciscoCiscoCISCO-SA-20170315-NSS
HistoryMar 15, 2017 - 4:00 p.m.

Cisco Nexus 9000 Series Switches Telnet Login Denial of Service Vulnerability

2017-03-1516:00:00
tools.cisco.com
16

0.002 Low

EPSS

Percentile

60.3%

A vulnerability in the Telnet remote login functionality of Cisco NX-OS Software running on Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to cause a Telnet process used for login to terminate unexpectedly and the login attempt to fail. There is no impact to user traffic flowing through the device.

The vulnerability is due to incomplete input validation of Telnet packet headers. An attacker could exploit this vulnerability by sending a crafted Telnet packet to an affected system during a remote Telnet login attempt. A successful exploit could allow the attacker to cause the Telnet process on the affected system to restart unexpectedly, resulting in a denial of service (DoS) condition for the Telnet process.

There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-nss [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-nss”]

Affected configurations

Vulners
Node
cisconx_osMatchany
OR
cisconx_osMatchany

0.002 Low

EPSS

Percentile

60.3%

Related for CISCO-SA-20170315-NSS