CVE-2015-4324: Buffer Overflow
Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.81), Nexus 3000 devices 7.3(0)ZN(0.81), Nexus 4000 devices 4.1(2)E1(1c), Nexus 7000 devices 7.2(0)N1(0.1), and Nexus 9000 devices 7.3(0)ZN(0.81) allows remote attackers to cause a denial of service (IGMP process restart) via a malformed IGMPv3 packet that is mishandled during memory allocation, aka Bug IDs CSCuv69713, CSCuv69717, CSCuv69723, CSCuv69732, and CSCuv48908.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4324?
CVE-2015-4324 is classified as a high severity vulnerability due to its potential to cause denial of service on affected devices.
How do I fix CVE-2015-4324?
To mitigate CVE-2015-4324, upgrade to the recommended fixed versions of Cisco NX-OS that address the buffer overflow issue.
What devices are affected by CVE-2015-4324?
CVE-2015-4324 affects several Cisco Nexus devices including Nexus 1000V, Nexus 3000, Nexus 4000, Nexus 7000, and Nexus 9000 that run specific versions of NX-OS.
What causes the CVE-2015-4324 vulnerability?
CVE-2015-4324 is caused by a buffer overflow condition in the IGMP process within the affected versions of Cisco NX-OS.
Is there a workaround for CVE-2015-4324?
There are no known workarounds for CVE-2015-4324; users are advised to apply the necessary updates to resolve this vulnerability.