CVE-2013-0570: Infoleak
The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0570?
CVE-2013-0570 is classified as a high severity vulnerability that can lead to a loss of confidentiality and network integrity.
How do I fix CVE-2013-0570?
To fix CVE-2013-0570, update your IBM Network Operating System to the latest version that addresses this vulnerability.
Who is affected by CVE-2013-0570?
CVE-2013-0570 affects users of IBM System Networking and Blade Network Technology switches running vulnerable versions of IBM Network Operating System.
What are the potential impacts of CVE-2013-0570?
The potential impacts of CVE-2013-0570 include network disruptions due to flooding of data frames across VLANs.
Is CVE-2013-0570 exploitable remotely?
Yes, CVE-2013-0570 is considered exploitable remotely, allowing attackers on the same network to trigger the vulnerability.