A vulnerability in the Precision Time Protocol (PTP) feature of Cisco Nexus 5500, 5600, and 6000 Series Switches running Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of protection against PTP frame flood attacks. An attacker could exploit this vulnerability by sending large streams of malicious IPv4 or IPv6 PTP traffic to the affected device. A successful exploit could allow the attacker to cause a DoS condition, impacting the traffic passing through the device.
2018-10-17T21:49:52.787
2024-11-21T03:38:06.057
Modified
CVSSv3.0: 8.6 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | nx-os | 7.3\(2\)n1\(0.8\) | Yes |
Hardware | cisco | nexus_5548p | - | No |
Hardware | cisco | nexus_5548up | - | No |
Hardware | cisco | nexus_5596t | - | No |
Hardware | cisco | nexus_5596up | - | No |
Hardware | cisco | nexus_56128p | - | No |
Hardware | cisco | nexus_5624q | - | No |
Hardware | cisco | nexus_5648q | - | No |
Hardware | cisco | nexus_5672up | - | No |
Hardware | cisco | nexus_5672up-16g | - | No |
Hardware | cisco | nexus_5696q | - | No |
Hardware | cisco | nexus_6001 | - | No |
Hardware | cisco | nexus_6004 | - | No |