First published: Tue Sep 08 2009(Updated: )
Unspecified vulnerability in Cisco NX-OS before 4.0(1a)N2(1), when running on Nexus 5000 platforms, allows remote attackers to cause a denial of service (crash) via an unspecified "sequence of TCP packets" related to "TCP State manipulation," possibly related to separate attacks against CVE-2008-4609.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco NX-OS | <=4.0 | |
Cisco Nexus 5000 firmware | ||
Cisco Nexus 7000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0627 is considered a high severity vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2009-0627, upgrade to Cisco NX-OS version 4.0(1a)N2(1) or later.
CVE-2009-0627 affects Cisco NX-OS versions prior to 4.0(1a)N2(1) and Nexus 5000 platforms.
Yes, CVE-2009-0627 can be exploited by remote attackers through a specific sequence of TCP packets.
The attack associated with CVE-2009-0627 is characterized by TCP State manipulation leading to a device crash.