Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2017-6655


A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition when an FCoE-related process unexpectedly reloads. This vulnerability affects Cisco NX-OS Software on the following Cisco devices when they are configured for FCoE: Multilayer Director Switches, Nexus 7000 Series Switches, Nexus 7700 Series Switches. More Information: CSCvc91729. Known Affected Releases: 8.3(0)CV(0.833). Known Fixed Releases: 8.3(0)ISH(0.62) 8.3(0)CV(0.944) 8.1(1) 8.1(0.8)S0 7.3(2)D1(0.47).


Published

2017-06-13T06:29:00.830

Last Modified

2025-04-20T01:37:25.860

Status

Deferred

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

CVSSv2 Vector

AV:A/AC:L/Au:N/C:N/I:N/A:P

  • Access Vector: ADJACENT_NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: PARTIAL
Exploitability Score

6.5

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-119

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application cisco mds_9000_nx-os 7.3\(1\)d1\(1\) Yes
Application cisco nx-os_for_nexus_5500_platform_switches 7.3\(1\)n1\(1\) Yes
Application cisco nx-os_for_nexus_5600_platform_switches 7.3\(1\)n1\(1\) Yes
Application cisco nx-os_for_nexus_7700_series_switches 8.0\(1\)\(ed\) Yes
Operating System cisco nx-os 8.0\(1\)s2 Yes
Operating System cisco nx-os 8.3\(0\)cv\(0.833\) Yes

References