CVE-2015-0686: Medium severity Cisco NX-OS vulnerability
Published Apr 3, 2015
·Updated
The SNMP implementation in Cisco NX-OS 6.1(2)I2(3) on Nexus 9000 devices, when a Reset High Availability (HA) policy is configured, allows remote authenticated users to cause a denial of service (device reload) via unspecified vectors, aka Bug ID CSCuq92240.
Affected Software
8 affected components
Cisco NX-OS=6.1\(2\)i2\(3\)
Cisco Nexus 9000
Cisco Nexus 93120tx
Cisco Nexus 93128tx
Cisco Nexus 9332pq
Cisco Nexus 9336pq Aci Spine
Cisco Nexus 9372px
Cisco Nexus 9372tx
Event History
Apr 3, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0686?
CVE-2015-0686 is classified as a denial of service vulnerability that affects certain Cisco NX-OS versions.
2
How do I fix CVE-2015-0686?
To fix CVE-2015-0686, update your Cisco NX-OS to a version that is not affected by the vulnerability.
3
What devices are affected by CVE-2015-0686?
CVE-2015-0686 specifically affects Cisco Nexus 9000 devices running NX-OS version 6.1(2)I2(3).
4
Can CVE-2015-0686 be exploited remotely?
Yes, CVE-2015-0686 can be exploited by remote authenticated users to cause a device reload.
5
What is the impact of CVE-2015-0686?
The impact of CVE-2015-0686 is a denial of service condition that results in device reloads.