imPC@ndo EN

Tracker / CVE-2020-3120

CVE-2020-3120

Media 6.5

A vulnerability in the Cisco Discovery Protocol implementation for Cisco FXOS Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a missing check when the affected software processes Cisco Discovery Protocol messages. An attacker could exploit this vulnerability by sending a malicious Cisco Discovery Protocol packet to an affected device. A successful exploit could allow the attacker to exhaust system memory, causing the device to reload. Cisco Discovery Protocol is a Layer 2 protocol. To exploit this vulnerability, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).

Prodotti e versioni affette

cisco firepower_extensible_operating_system · … → 2.3.1.173
cisco firepower_extensible_operating_system · 2.6 → 2.6.1.187
cisco firepower_extensible_operating_system · 2.7 → 2.7.1.106
cisco fxos
cisco ios_xr
cisco nx-os · … → 13.2\(9b\)
cisco nx-os · … → 5.2
cisco nx-os · … → 5.2\(1\)sv3\(4.1b\)
cisco nx-os · … → 6.2\(24\)
cisco nx-os · … → 7.3\(6\)n1\(1\)
cisco nx-os · 14.0 → 14.2\(1j\)
cisco nx-os · 5.2 → 5.2\(1\)sv5\(1.3\)
cisco nx-os · 5.2 → 6.2\(29\)
cisco nx-os · 7.0\(3\)f2 → 9.3\(2\)
cisco nx-os · 7.0\(3\)i → 7.0\(3\)i7\(8\)
cisco nx-os · 7.2 → 7.3\(5\)d1\(1\)
cisco nx-os · 7.3 → 8.4\(1a\)
cisco nx-os · 8.0 → 8.2\(5\)
cisco nx-os · 8.3 → 8.4\(2\)
cisco ucs_manager · … → 3.2\(3m\)
cisco ucs_manager · 4.0 → 4.0\(4g\)

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti