CVE-2015-6392: High severity cisco nx-os vulnerability
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via crafted IPv4 DHCP packets to the (1) DHCPv4 relay agent or (2) smart relay agent, aka Bug IDs CSCuq24603, CSCur93159, CSCus21693, and CSCut76171.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6392?
CVE-2015-6392 has been assigned a high severity rating due to its potential to cause a denial of service by crashing affected Cisco Nexus devices.
How do I fix CVE-2015-6392?
To mitigate CVE-2015-6392, upgrade the affected Cisco NX-OS devices to a patched version provided by Cisco.
Which devices are affected by CVE-2015-6392?
CVE-2015-6392 impacts multiple models of Cisco Nexus devices running NX-OS versions 4.1 through 7.3 and 11.0 through 11.2.
Can CVE-2015-6392 be exploited remotely?
Yes, CVE-2015-6392 can be exploited remotely through crafted IPv4 DHCP packets targeted at the vulnerable devices.
What are the potential impacts of CVE-2015-6392?
The exploitation of CVE-2015-6392 can lead to a denial of service, resulting in the affected device becoming unresponsive or crashing.