Lucene search

K
cve[email protected]CVE-2015-4323
HistoryAug 19, 2015 - 11:59 p.m.

CVE-2015-4323

2015-08-1923:59:02
CWE-119
web.nvd.nist.gov
28
cisco
nx-os
nexus
buffer overflow
cve-2015-4323
denial of service
arp packet
vulnerability

6.1 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

7.1 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

74.8%

Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.9); Nexus 3000 devices 6.0(2)U5(1.41), 7.0(3)I2(0.373), and 7.3(0)ZN(0.83); Nexus 4000 devices 4.1(2)E1(1b); Nexus 7000 devices 6.2(14)S1; Nexus 9000 devices 7.3(0)ZN(0.9); and MDS 9000 devices 6.2 (13) and 7.1(0)ZN(91.99) and MDS SAN-OS 7.1(0)ZN(91.99) allows remote attackers to cause a denial of service (device outage) via a crafted ARP packet, related to incorrect MTU validation, aka Bug IDs CSCuv71933, CSCuv61341, CSCuv61321, CSCuu78074, CSCut37060, CSCuv61266, CSCuv61351, CSCuv61358, and CSCuv61366.

Affected configurations

NVD
Node
cisconx-osMatch6.2\(14\)s1
AND
cisconexus_7000Match-
OR
cisconexus_7700Match-
Node
cisconx-osMatch6.0\(2\)u5\(1.41\)
OR
cisconx-osMatch7.0\(3\)i2\(0.373\)
OR
cisconx-osMatch7.3\(0\)zn\(0.83\)
AND
cisconexus_3016Match-
OR
cisconexus_3048Match-
OR
cisconexus_3064Match-
OR
cisconexus_31128pq
OR
cisconexus_3132qMatch-
OR
cisconexus_3164qMatch-
OR
cisconexus_3172Match-
OR
cisconexus_3232cMatch-
OR
cisconexus_3264qMatch-
OR
cisconexus_3524Match-
OR
cisconexus_3548Match-
Node
cisconx-osMatch7.3\(0\)zn\(0.9\)
AND
cisconexus_93120txMatch-
OR
cisconexus_93128txMatch-
OR
cisconexus_9332pqMatch-
OR
cisconexus_9336pq_aci_spineMatch-
OR
cisconexus_9372pxMatch-
OR
cisconexus_9372txMatch-
OR
cisconexus_9396pxMatch-
OR
cisconexus_9396txMatch-
OR
cisconexus_9504Match-
OR
cisconexus_9508Match-
OR
cisconexus_9516Match-
Node
ciscomds_9000_nx-osMatch6.2\(13\)
OR
ciscomds_9000_nx-osMatch7.1\(0\)zn\(91.99\)
Node
cisconx-osMatch7.3\(0\)zn\(0.9\)
AND
cisconexus_1000vMatch-
Node
cisconx-osMatch4.1\(2\)e1\(1b\)
AND
cisconexus_4001iMatch-
CPENameOperatorVersion
cisco:nx-oscisco nx-oseq6.2\(14\)s1

6.1 Medium

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:A/AC:L/Au:N/C:N/I:N/A:C

7.1 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

74.8%