CVE-2014-7989: Input Validation
Cisco Unified Computing System on B-Series blade servers allows local users to gain shell privileges via a crafted (1) ping6 or (2) traceroute6 command, aka Bug ID CSCuq38176.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-7989?
CVE-2014-7989 has a medium severity rating due to the potential for local users to escalate privileges.
How do I fix CVE-2014-7989?
To remediate CVE-2014-7989, implement the recommended patches or updates provided by Cisco for the affected B-Series blade servers.
What affected systems are impacted by CVE-2014-7989?
CVE-2014-7989 affects various Cisco B-Series blade servers including B200 M3, B200 M4, B22 M3, B230 M2, B260 M4, B420 M3, B440 M2, and B460 M4.
Can CVE-2014-7989 be exploited remotely?
No, CVE-2014-7989 can only be exploited by authorized local users on the affected systems.
What is the nature of the vulnerability in CVE-2014-7989?
CVE-2014-7989 allows local users to gain shell privileges on Cisco Unified Computing System through crafted ping6 or traceroute6 commands.