Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-1964


A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device. The vulnerability is due to improper validation of IPv6 traffic sent through an affected device. An attacker could exploit this vulnerability by sending a malformed IPv6 packet through an affected device. A successful exploit could allow the attacker to cause a denial of service (DoS) condition while the netstack process restarts. A sustained attack could lead to a reboot of the device.


Published

2019-08-28T19:15:10.973

Last Modified

2024-11-21T04:37:46.927

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 8.6 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

6.9

Weaknesses
  • Type: Secondary
    CWE-20
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System cisco nx-os < 8.2\(3\) Yes
Operating System cisco nx-os < 8.4 Yes
Hardware cisco 7000_10-slot - No
Hardware cisco 7000_18-slot - No
Hardware cisco 7000_4-slot - No
Hardware cisco 7000_9-slot - No
Hardware cisco 7700_10-slot - No
Hardware cisco 7700_18-slot - No
Hardware cisco 7700_2-slot - No
Hardware cisco 7700_6-slot - No
Hardware cisco n77-f312ck-26 - No
Hardware cisco n77-f324fq-25 - No
Hardware cisco n77-f348xp-23 - No
Hardware cisco n77-f430cq-36 - No
Hardware cisco n77-m312cq-26l - No
Hardware cisco n77-m324fq-25l - No
Hardware cisco n77-m348xp-23l - No
Hardware cisco n7k-f248xp-25e - No
Hardware cisco n7k-f306ck-25 - No
Hardware cisco n7k-f312fq-25 - No
Hardware cisco n7k-m202cf-22l - No
Hardware cisco n7k-m206fq-23l - No
Hardware cisco n7k-m224xp-23l - No
Hardware cisco n7k-m324fq-25l - No
Hardware cisco n7k-m348xp-25l - No
Hardware cisco nexus_7000_supervisor_1 - No
Hardware cisco nexus_7000_supervisor_2 - No
Hardware cisco nexus_7000_supervisor_2e - No
Hardware cisco nexus_7700_supervisor_2e - No
Hardware cisco nexus_7700_supervisor_3e - No

References