CVE-2014-3261: Buffer Overflow
Buffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX-OS 5.0 before 5.0(3)U2(2) on Nexus 3000 devices, NX-OS 4.1 before 4.1(2)E1(1l) on Nexus 4000 devices, NX-OS 5.x before 5.1(3)N1(1) on Nexus 5000 devices, NX-OS 5.2 before 5.2(3a) on Nexus 7000 devices, and CG-OS CG4 before CG4(2) on Connected 1000 Connected Grid Routers allows remote SMTP servers to execute arbitrary code via a crafted reply, aka Bug IDs CSCtk00695, CSCts56633, CSCts56632, CSCts56628, CSCug14405, and CSCuf61322.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3261?
CVE-2014-3261 has a high severity rating due to its potential for remote code execution through a buffer overflow.
How do I fix CVE-2014-3261?
To fix CVE-2014-3261, upgrade affected Cisco NX-OS devices to the recommended versions provided in the Cisco security advisory.
What products are affected by CVE-2014-3261?
CVE-2014-3261 affects various Cisco NX-OS devices including the Nexus 3000, 4000, and 5000 series along with the Unified Computing System Fabric Interconnects.
What type of vulnerability is CVE-2014-3261?
CVE-2014-3261 is categorized as a buffer overflow vulnerability in the Smart Call Home functionality.
Can CVE-2014-3261 be exploited remotely?
Yes, CVE-2014-3261 can be exploited remotely, making it critical to apply patches and updates promptly.