A vulnerability in the implementation of a specific CLI command and the associated Simple Network Management Protocol (SNMP) MIB for Cisco NX-OS (in standalone NX-OS mode) on Cisco Nexus 3000 and 9000 Series Switches could allow an authenticated, remote attacker to exhaust system memory on an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to the incorrect implementation of the CLI command, resulting in a failure to free all allocated memory upon completion. An attacker could exploit this vulnerability by authenticating to the affected device and repeatedly issuing a specific CLI command or sending a specific SNMP poll request for a specific Object Identifier (OID). A successful exploit could allow the attacker to cause the IP routing process to restart or to cause a device reset, resulting in a DoS condition. Cisco Bug IDs: CSCvf23136.
2018-06-21T11:29:00.570
2024-11-21T03:37:56.957
Modified
CVSSv3.0: 7.7 (HIGH)
AV:N/AC:L/Au:S/C:N/I:N/A:C
8.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | nx-os | 7.0\(3\)i5\(2\) | Yes |
Operating System | cisco | nx-os | 7.0\(3\)i6\(1\) | Yes |
Hardware | cisco | nexus_3016 | - | No |
Hardware | cisco | nexus_3048 | - | No |
Hardware | cisco | nexus_3064 | - | No |
Hardware | cisco | nexus_3064-t | - | No |
Hardware | cisco | nexus_31108pc-v | - | No |
Hardware | cisco | nexus_31108tc-v | - | No |
Hardware | cisco | nexus_31128pq | - | No |
Hardware | cisco | nexus_3132q | - | No |
Hardware | cisco | nexus_3132q-v | - | No |
Hardware | cisco | nexus_3132q-xl | - | No |
Hardware | cisco | nexus_3164q | - | No |
Hardware | cisco | nexus_3172 | - | No |
Hardware | cisco | nexus_3172pq-xl | - | No |
Hardware | cisco | nexus_3172tq | - | No |
Hardware | cisco | nexus_3172tq-32t | - | No |
Hardware | cisco | nexus_3172tq-xl | - | No |
Hardware | cisco | nexus_3232c | - | No |
Hardware | cisco | nexus_3264q | - | No |
Hardware | cisco | nexus_9000v | - | No |
Hardware | cisco | nexus_92160yc-x | - | No |
Hardware | cisco | nexus_92300yc | - | No |
Hardware | cisco | nexus_92304qc | - | No |
Hardware | cisco | nexus_9236c | - | No |
Hardware | cisco | nexus_9272q | - | No |
Hardware | cisco | nexus_93108tc-ex | - | No |
Hardware | cisco | nexus_93120tx | - | No |
Hardware | cisco | nexus_93128tx | - | No |
Hardware | cisco | nexus_93180lc-ex | - | No |
Hardware | cisco | nexus_93180yc-ex | - | No |
Hardware | cisco | nexus_9332pq | - | No |
Hardware | cisco | nexus_9372px | - | No |
Hardware | cisco | nexus_9372px-e | - | No |
Hardware | cisco | nexus_9372tx | - | No |
Hardware | cisco | nexus_9372tx-e | - | No |
Hardware | cisco | nexus_9396px | - | No |
Hardware | cisco | nexus_9396tx | - | No |
Hardware | cisco | nexus_9504 | - | No |
Hardware | cisco | nexus_9508 | - | No |
Hardware | cisco | nexus_9516 | - | No |