CVE-2016-1465

MEDIUM

Cisco Nexus 1000v AVS <5.2(1)SV3(1.5i) - DoS

Title source: llm

Description

Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hypervisor crash and purple screen) via a crafted Cisco Discovery Protocol packet that triggers an out-of-bounds memory access, aka Bug ID CSCuw57985.

Scores

CVSS v3 6.5
EPSS 0.0090
EPSS Percentile 75.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Classification

CWE
CWE-399
Status draft

Affected Products (21)

cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
cisco/nx-os
... and 6 more

Timeline

Published Jul 28, 2016
Tracked Since Feb 18, 2026