8.3
CVSSv2

CVE-2013-1178

Published: 25/04/2013 Updated: 25/04/2013
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
VMScore: 739
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x prior to 5.2(4) and 6.x prior to 6.1(1), Nexus 5000 and 5500 devices 4.x and 5.x prior to 5.1(3)N1(1), Nexus 4000 devices prior to 4.1(2)E1(1h), Nexus 3000 devices 5.x prior to 5.0(3)U3(1), Nexus 1000V devices 4.x prior to 4.2(1)SV1(5.1), MDS 9000 devices 4.x and 5.x prior to 5.2(4), Unified Computing System (UCS) 6100 and 6200 devices prior to 2.0(2m), and Connected Grid Router (CGR) 1000 devices before CG4(1) allow remote malicious users to execute arbitrary code via malformed CDP packets, aka Bug IDs CSCtu10630, CSCtu10551, CSCtu10550, CSCtw56581, CSCtu10548, CSCtu10544, and CSCuf61275.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco nx-os 4.1\\(3\\)n1\\(1\\)

cisco nx-os 4.0\\(1a\\)n1\\(1a\\)

cisco nx-os 4.0\\(1a\\)n2\\(1\\)

cisco nx-os 4.1\\(3\\)n1\\(1a\\)

cisco nx-os 4.2.\\(2a\\)

cisco nx-os 4.2\\(6\\)

cisco nx-os 4.2\\(3\\)

cisco nx-os 4.1.\\(5\\)

cisco nx-os 5.0\\(3\\)n2\\(2\\)

cisco nx-os 5.1\\(3\\)n1\\(1\\)

cisco nx-os 5.0\\(3\\)n1\\(1c\\)

cisco nx-os 5.0\\(3\\)n1\\(1\\)

cisco nx-os 5.0\\(5\\)

cisco nx-os 5.2\\(3a\\)

cisco nx-os 5.2\\(1\\)

cisco nx-os 5.1\\(6\\)

cisco nx-os 4.2\\(1\\)sv1\\(5.1\\)

cisco nx-os 4.0\\(4\\)sv1\\(3d\\)

cisco nx-os 4.0\\(4\\)sv1\\(3\\)

cisco nx-os 4.0\\(4\\)sv1\\(3a\\)

cisco nx-os 4.2\\(1\\)n2\\(1\\)

cisco nx-os 4.2\\(1\\)n1\\(1\\)

cisco nx-os 4.0\\(0\\)n1\\(1a\\)

cisco nx-os 4.0\\(0\\)n1\\(2\\)

cisco nx-os 5.1\\(3\\)n1\\(1a\\)

cisco nx-os 5.0\\(3\\)n2\\(2b\\)

cisco nx-os 5.0\\(3\\)n2\\(2a\\)

cisco nx-os 5.0\\(2\\)n2\\(1\\)

cisco nx-os 5.0\\(2a\\)

cisco nx-os 5.1\\(2\\)

cisco nx-os 5.0\\(2\\)

cisco nx-os 5.2\\(3\\)

cisco nx-os 4.2\\(1\\)sv1\\(4a\\)

cisco nx-os 4.0\\(4\\)sv1\\(1\\)

cisco nx-os 4.0\\(4\\)sv1\\(3c\\)

cisco nx-os 4.0\\(1a\\)n2\\(1a\\)

cisco nx-os 4.2\\(1\\)n2\\(1a\\)

cisco nx-os 4.1\\(3\\)n2\\(1a\\)

cisco nx-os 4.0\\(0\\)n1\\(2a\\)

cisco nx-os 4.2\\(2\\)

cisco nx-os 4.1.\\(3\\)

cisco nx-os 4.2\\(8\\)

cisco nx-os 5.0\\(2\\)n2\\(1a\\)

cisco nx-os 5.0\\(2\\)n1\\(1\\)

cisco nx-os 5.0

cisco nx-os 5.1

cisco nx-os 5.1\\(3\\)

cisco nx-os 5.1\\(1\\)

cisco nx-os 5.1\\(5\\)

cisco nx-os 6.0\\(2\\)

cisco nx-os 4.2\\(1\\)sv1\\(4\\)

cisco nx-os 4.0\\(4\\)sv1\\(2\\)

cisco nx-os 4.0\\(4\\)sv1\\(3b\\)

cisco nx-os 4.0

cisco nx-os 4.2

cisco nx-os 4.1\\(3\\)n2\\(1\\)

cisco nx-os 4.0\\(1a\\)n1\\(1\\)

cisco nx-os 4.2\\(1\\)

cisco nx-os 4.2\\(4\\)

cisco nx-os 4.1.\\(4\\)

cisco nx-os 4.1.\\(2\\)

cisco nx-os 5.0\\(3\\)n1\\(1b\\)

cisco nx-os 5.0\\(3\\)n2\\(1\\)

cisco nx-os 5.0\\(3\\)n1\\(1a\\)

cisco nx-os 5.2

cisco nx-os 5.0\\(3\\)

cisco nx-os 5.1\\(4\\)

cisco nx-os 5.1\\(1a\\)

cisco nx-os 6.0\\(1\\)

cisco nx-os 6.1

cisco nexus_7000 -

cisco nexus_7000_10-slot -

cisco nexus_7000_18-slot -

cisco nexus_7000_9-slot -

cisco mds_9000

cisco nexus_5000 -

cisco nexus_5010 -

cisco nexus_5548p -

cisco nexus_5596up -

cisco nexus_5020 -

cisco nexus_5548up -

cisco nx-os

cisco nexus_4001i -

cisco nexus_3064t -

cisco nexus_3000

cisco nexus_3548 -

cisco nexus_3048 -

cisco nexus_3016q -

cisco nexus_3064x -

cisco nexus_1000v -

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 2.0\\(1w\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3l\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3i\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(1m\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(1j\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1y\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.0\\(2k\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.1\\(1m\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.2\\(1\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.2

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 2.0\\(1q\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 2.0\\(1t\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1p\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1n\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1w\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1q\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3q\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.2\\(1d\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.2\\(1a\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.1

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(4j\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(4k\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1o\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(4g\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(4f\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3y\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3u\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 2.0\\(1s\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1m\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1c\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.3\\(1t\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(4i\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3s\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.4\\(3m\\)

cisco unified_computing_system_infrastructure_and_unified_computing_system_software 1.0

cisco unified_computing_system_6296up_fabric_interconnect -

cisco unified_computing_system_6248up_fabric_interconnect -

cisco unified_computing_system_6140xp_fabric_interconnect -

cisco unified_computing_system_6120xp_fabric_interconnect -

cisco cg-os cg1

cisco cg-os cg3

cisco cg-os

cisco cg-os cg2

cisco connected_grid_router_1000 -

Vendor Advisories

Cisco Nexus, Cisco Unified Computing System (UCS), Cisco MDS 9000 Series Multilayer Switches, and Cisco 1000 Series Connected Grid Routers (CGR) are all based on the Cisco NX-OS operating system These products are affected by one or more of the following vulnerabilities: Multiple Cisco Discovery Protocol Vulnerabilities in Cisco NX-OS-Based ...