7.8
CVSSv2

CVE-2015-6398

Published: 07/02/2016 Updated: 06/12/2016
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches with software prior to 11.0(1c) allow remote malicious users to cause a denial of service (device reload) via an IPv4 ICMP packet with the IP Record Route option, aka Bug ID CSCuq57512.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco nx-os 11.0\\\\\\(1b\\\\\\)

Vendor Advisories

A vulnerability in the ICMP implementation in the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch could allow an unauthenticated, remote attacker to cause the switch to reload, resulting in a denial of service (DoS) condition The vulnerability is due to improper handling of an ICMP packet with the IPv4 Type 7 option f ...