CVE-2015-4301: Medium severity cisco nx-os vulnerability
Published Aug 19, 2015
·Updated
Cisco NX-OS on Nexus 9000 devices 11.1(1c) allows remote authenticated users to cause a denial of service (device hang) via large files that are copied to a device's filesystem, aka Bug ID CSCuu77225.
Affected Software
7 affected components
Cisco NX-OS=11.1\(1c\)
Cisco Nexus 93120tx
Cisco Nexus 93128tx
Cisco Nexus 9332pq
Cisco Nexus 9336pq Aci Spine
Cisco Nexus 9372px
Cisco Nexus 9372tx
Event History
Aug 19, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4301?
CVE-2015-4301 is classified as a high-severity vulnerability that can lead to denial of service on affected Cisco Nexus 9000 devices.
2
How do I fix CVE-2015-4301?
To mitigate CVE-2015-4301, avoid copying large files to the filesystem of Cisco NX-OS devices running version 11.1(1c).
3
Which devices are affected by CVE-2015-4301?
CVE-2015-4301 specifically affects Cisco NX-OS on Nexus 9000 devices that are running the software version 11.1(1c).
4
Can remote unauthenticated users exploit CVE-2015-4301?
No, CVE-2015-4301 requires remote authenticated users to exploit the vulnerability.
5
What is the impact of CVE-2015-4301?
The impact of CVE-2015-4301 is a device hang, leading to a denial of service condition.