CVE-2015-6277: Medium severity cisco nx-os vulnerability
The ARP implementation in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 5.2(1)SV3(1.4), Nexus 3000 devices 7.3(0)ZD(0.47), Nexus 4000 devices 4.1(2)E1, Nexus 9000 devices 7.3(0)ZD(0.61), and MDS 9000 devices 7.0(0)HSK(0.353) and SAN-OS NX-OS on MDS 9000 devices 7.0(0)HSK(0.353) allows remote attackers to cause a denial of service (ARP process restart) via crafted packet-header fields, aka Bug ID CSCut25292.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6277?
CVE-2015-6277 has a CVSS score of 7.8, indicating high severity.
Which devices are affected by CVE-2015-6277?
CVE-2015-6277 affects Cisco NX-OS on Nexus 1000V, Nexus 3000, Nexus 4000, Nexus 9000, and MDS 9000 devices.
How do I fix CVE-2015-6277?
To fix CVE-2015-6277, upgrade the affected Cisco NX-OS devices to a version that is not vulnerable as recommended by Cisco advisories.
Can CVE-2015-6277 be exploited remotely?
Yes, CVE-2015-6277 allows for remote code execution under specific conditions.
What impact does CVE-2015-6277 have on system security?
CVE-2015-6277 can potentially allow an attacker to manipulate ARP traffic, leading to unauthorized access or disruption of network services.