CVE-2015-6393
HIGHCisco NX-OS 4.1-7.3 and 11.0-11.2 - Denial of Service via Malformed IPv4 DHCP Packets
Title source: llmDescription
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via malformed IPv4 DHCP packets to the DHCPv4 relay agent, aka Bug IDs CSCuq39250, CSCus21733, CSCus21739, CSCut76171, and CSCux67182.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/93419
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-dhcp2
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1036949
Scores
CVSS v3
7.5
EPSS
0.0191
EPSS Percentile
77.7%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-399
Status
published
Products (50)
cisco/nx-os
4.2\(1\)n1\(1\)
cisco/nx-os
4.2\(1\)n2\(1\)
cisco/nx-os
4.2\(1\)n2\(1a\)
cisco/nx-os
5.0\(2\)n1\(1\)
cisco/nx-os
5.0\(2\)n2\(1\)
cisco/nx-os
5.0\(2\)n2\(1a\)
cisco/nx-os
5.0\(3\)n1\(1c\)
cisco/nx-os
5.0\(3\)n2\(1\)
cisco/nx-os
5.0\(3\)n2\(2\)
cisco/nx-os
5.0\(3\)n2\(2a\)
... and 40 more
Published
Oct 06, 2016
Tracked Since
Feb 18, 2026