Tracker / CVE-2020-3120
CVE-2020-3120
A vulnerability in the Cisco Discovery Protocol implementation for Cisco FXOS Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a reload of an affected device, resulting in a denial of service (DoS) condition. The vulnerability is due to a missing check when the affected software processes Cisco Discovery Protocol messages. An attacker could exploit this vulnerability by sending a malicious Cisco Discovery Protocol packet to an affected device. A successful exploit could allow the attacker to exhaust system memory, causing the device to reload. Cisco Discovery Protocol is a Layer 2 protocol. To exploit this vulnerability, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).
Prodotti e versioni affette
| cisco | firepower_extensible_operating_system · … → 2.3.1.173 |
|---|---|
| cisco | firepower_extensible_operating_system · 2.6 → 2.6.1.187 |
| cisco | firepower_extensible_operating_system · 2.7 → 2.7.1.106 |
| cisco | fxos |
| cisco | ios_xr |
| cisco | nx-os · … → 13.2\(9b\) |
| cisco | nx-os · … → 5.2 |
| cisco | nx-os · … → 5.2\(1\)sv3\(4.1b\) |
| cisco | nx-os · … → 6.2\(24\) |
| cisco | nx-os · … → 7.3\(6\)n1\(1\) |
| cisco | nx-os · 14.0 → 14.2\(1j\) |
| cisco | nx-os · 5.2 → 5.2\(1\)sv5\(1.3\) |
| cisco | nx-os · 5.2 → 6.2\(29\) |
| cisco | nx-os · 7.0\(3\)f2 → 9.3\(2\) |
| cisco | nx-os · 7.0\(3\)i → 7.0\(3\)i7\(8\) |
| cisco | nx-os · 7.2 → 7.3\(5\)d1\(1\) |
| cisco | nx-os · 7.3 → 8.4\(1a\) |
| cisco | nx-os · 8.0 → 8.2\(5\) |
| cisco | nx-os · 8.3 → 8.4\(2\) |
| cisco | ucs_manager · … → 3.2\(3m\) |
| cisco | ucs_manager · 4.0 → 4.0\(4g\) |