Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2014-3295


The HSRP implementation in Cisco NX-OS 6.2(2a) and earlier allows remote attackers to bypass authentication and cause a denial of service (group-member state modification and traffic blackholing) via malformed HSRP packets, aka Bug ID CSCup11309.


Published

2014-06-14T04:26:47.173

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.8 (MEDIUM)

CVSSv2 Vector

AV:A/AC:L/Au:N/C:N/I:P/A:P

  • Access Vector: ADJACENT_NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

6.5

Impact Score

4.9

Weaknesses
  • Type: Primary
    CWE-287

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System cisco nx-os ≤ 6.2\(2a\) Yes
Operating System cisco nx-os 4.1.\(2\) Yes
Operating System cisco nx-os 4.1.\(3\) Yes
Operating System cisco nx-os 4.1.\(4\) Yes
Operating System cisco nx-os 4.1.\(5\) Yes
Operating System cisco nx-os 4.2\(3\) Yes
Operating System cisco nx-os 4.2\(4\) Yes
Operating System cisco nx-os 4.2\(6\) Yes
Operating System cisco nx-os 4.2\(8\) Yes
Operating System cisco nx-os 4.2.\(2a\) Yes
Operating System cisco nx-os 5.0\(2a\) Yes
Operating System cisco nx-os 5.0\(3\) Yes
Operating System cisco nx-os 5.0\(5\) Yes
Operating System cisco nx-os 5.1\(1a\) Yes
Operating System cisco nx-os 5.1\(3\) Yes
Operating System cisco nx-os 5.1\(4\) Yes
Operating System cisco nx-os 5.1\(5\) Yes
Operating System cisco nx-os 5.1\(6\) Yes
Operating System cisco nx-os 5.2\(1\) Yes
Operating System cisco nx-os 5.2\(3a\) Yes
Operating System cisco nx-os 5.2\(4\) Yes
Operating System cisco nx-os 5.2\(5\) Yes
Operating System cisco nx-os 5.2\(7\) Yes
Operating System cisco nx-os 5.2\(9\) Yes
Operating System cisco nx-os 6.0\(1\) Yes
Operating System cisco nx-os 6.0\(2\) Yes
Operating System cisco nx-os 6.0\(3\) Yes
Operating System cisco nx-os 6.0\(4\) Yes
Operating System cisco nx-os 6.1\(1\) Yes
Operating System cisco nx-os 6.1\(2\) Yes
Operating System cisco nx-os 6.1\(3\) Yes
Operating System cisco nx-os 6.1\(4\) Yes
Operating System cisco nx-os 6.1\(4a\) Yes
Operating System cisco nx-os 6.2\(2\) Yes

References