CVE Vulnerabilities

CVE-2016-1465

Published: Jul 28, 2016 | Modified: Sep 01, 2017
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
6.1 MEDIUM
AV:A/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hypervisor crash and purple screen) via a crafted Cisco Discovery Protocol packet that triggers an out-of-bounds memory access, aka Bug ID CSCuw57985.

Affected Software

Name Vendor Start Version End Version
Nx-os Cisco 4.0(4)sv1(1) (including) 4.0(4)sv1(1) (including)
Nx-os Cisco 4.0(4)sv1(2) (including) 4.0(4)sv1(2) (including)
Nx-os Cisco 4.0(4)sv1(3) (including) 4.0(4)sv1(3) (including)
Nx-os Cisco 4.0(4)sv1(3a) (including) 4.0(4)sv1(3a) (including)
Nx-os Cisco 4.0(4)sv1(3b) (including) 4.0(4)sv1(3b) (including)
Nx-os Cisco 4.0(4)sv1(3c) (including) 4.0(4)sv1(3c) (including)
Nx-os Cisco 4.0(4)sv1(3d) (including) 4.0(4)sv1(3d) (including)
Nx-os Cisco 4.2(1)sv1(4) (including) 4.2(1)sv1(4) (including)
Nx-os Cisco 4.2(1)sv1(4a) (including) 4.2(1)sv1(4a) (including)
Nx-os Cisco 4.2(1)sv1(4b) (including) 4.2(1)sv1(4b) (including)
Nx-os Cisco 4.2(1)sv1(5.1) (including) 4.2(1)sv1(5.1) (including)
Nx-os Cisco 4.2(1)sv1(5.1a) (including) 4.2(1)sv1(5.1a) (including)
Nx-os Cisco 4.2(1)sv1(5.2) (including) 4.2(1)sv1(5.2) (including)
Nx-os Cisco 4.2(1)sv1(5.2b) (including) 4.2(1)sv1(5.2b) (including)
Nx-os Cisco 4.2(1)sv2(1.1) (including) 4.2(1)sv2(1.1) (including)
Nx-os Cisco 4.2(1)sv2(1.1a) (including) 4.2(1)sv2(1.1a) (including)
Nx-os Cisco 4.2(1)sv2(2.1) (including) 4.2(1)sv2(2.1) (including)
Nx-os Cisco 4.2(1)sv2(2.1a) (including) 4.2(1)sv2(2.1a) (including)
Nx-os Cisco 5.2(1)sv3(1.1) (including) 5.2(1)sv3(1.1) (including)
Nx-os Cisco 5.2(1)sv3(1.3) (including) 5.2(1)sv3(1.3) (including)
Nx-os Cisco 5.2(1)sv3(1.4) (including) 5.2(1)sv3(1.4) (including)

References