CVE-2015-4323: Buffer Overflow
Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.9); Nexus 3000 devices 6.0(2)U5(1.41), 7.0(3)I2(0.373), and 7.3(0)ZN(0.83); Nexus 4000 devices 4.1(2)E1(1b); Nexus 7000 devices 6.2(14)S1; Nexus 9000 devices 7.3(0)ZN(0.9); and MDS 9000 devices 6.2 (13) and 7.1(0)ZN(91.99) and MDS SAN-OS 7.1(0)ZN(91.99) allows remote attackers to cause a denial of service (device outage) via a crafted ARP packet, related to incorrect MTU validation, aka Bug IDs CSCuv71933, CSCuv61341, CSCuv61321, CSCuu78074, CSCut37060, CSCuv61266, CSCuv61351, CSCuv61358, and CSCuv61366.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4323?
CVE-2015-4323 is rated as high severity due to the potential for remote code execution through a buffer overflow.
How do I fix CVE-2015-4323?
To fix CVE-2015-4323, you should upgrade to the latest version of Cisco NX-OS that addresses this vulnerability.
What devices are affected by CVE-2015-4323?
CVE-2015-4323 affects Cisco NX-OS on various Nexus series devices including Nexus 1000V, 3000, 4000, 7000, and 9000.
What versions of Cisco NX-OS are vulnerable in CVE-2015-4323?
The vulnerable versions include Cisco NX-OS 6.0(2)U5(1.41), 7.0(3)I2(0.373), and 7.3(0)ZN(0.83), among others.
Can CVE-2015-4323 be exploited remotely?
Yes, CVE-2015-4323 can be exploited remotely, allowing attackers to execute arbitrary code on affected devices.