CVE-2015-6393: High severity cisco nx-os vulnerability
Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via malformed IPv4 DHCP packets to the DHCPv4 relay agent, aka Bug IDs CSCuq39250, CSCus21733, CSCus21739, CSCut76171, and CSCux67182.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6393?
The severity of CVE-2015-6393 is considered critical as it allows remote attackers to cause a denial of service by sending malformed DHCP packets.
How do I fix CVE-2015-6393?
To fix CVE-2015-6393, upgrade your Cisco NX-OS to a version that is not affected by this vulnerability.
Which devices are affected by CVE-2015-6393?
CVE-2015-6393 affects various Cisco Nexus devices running NX-OS versions 4.1 through 7.3 and 11.0 through 11.2.
What types of attacks does CVE-2015-6393 enable?
CVE-2015-6393 enables remote denial of service attacks via malformed DHCP packets targeting the DHCPv4 relay agent.
Is there a workaround for CVE-2015-6393?
There are no specific workarounds mentioned for CVE-2015-6393; the recommended action is to apply the appropriate software updates.