5
CVSSv2

CVE-2013-5566

Published: 08/11/2013 Updated: 14/11/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Cisco NX-OS 5.0 and previous versions on MDS 9000 devices allows remote malicious users to cause a denial of service (supervisor CPU consumption) via Authentication Header (AH) authentication in a Virtual Router Redundancy Protocol (VRRP) frame, aka Bug ID CSCte27874.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco nx-os

cisco nx-os 4.0

cisco nx-os 4.0(0)n1(1a)

cisco nx-os 4.0(0)n1(2)

cisco nx-os 4.0(0)n1(2a)

cisco nx-os 4.0(1a)n1(1)

cisco nx-os 4.0(1a)n1(1a)

cisco nx-os 4.0(1a)n2(1)

cisco nx-os 4.0(1a)n2(1a)

cisco nx-os 4.0(4)sv1(1)

cisco nx-os 4.0(4)sv1(2)

cisco nx-os 4.0(4)sv1(3)

cisco nx-os 4.0(4)sv1(3a)

cisco nx-os 4.0(4)sv1(3b)

cisco nx-os 4.0(4)sv1(3c)

cisco nx-os 4.0(4)sv1(3d)

cisco nx-os 4.1(3)n1(1)

cisco nx-os 4.1(3)n1(1a)

cisco nx-os 4.1(3)n2(1)

cisco nx-os 4.1(3)n2(1a)

cisco nx-os 4.1.(2)

cisco nx-os 4.1.(3)

cisco nx-os 4.1.(4)

cisco nx-os 4.1.(5)

cisco nx-os 4.2

cisco nx-os 4.2(1)

cisco nx-os 4.2(1)n1(1)

cisco nx-os 4.2(1)n2(1)

cisco nx-os 4.2(1)n2(1a)

cisco nx-os 4.2(1)sv1(4)

cisco nx-os 4.2(1)sv1(4a)

cisco nx-os 4.2(1)sv1(5.1)

cisco nx-os 4.2(2)

cisco nx-os 4.2(3)

cisco nx-os 4.2(4)

cisco nx-os 4.2(6)

cisco nx-os 4.2(8)

cisco nx-os 4.2.(2a)

Vendor Advisories

A vulnerability in the supervisor of the Cisco MDS Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition The vulnerability is due to improper handling of Virtual Router Redundancy Protocol (VRRP) frames An attacker could exploit this vulnerability by sending a VRRP frame with Authentication Header (A ...