First published: Sun Feb 07 2016(Updated: )
Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches with software before 11.0(1c) allow remote attackers to cause a denial of service (device reload) via an IPv4 ICMP packet with the IP Record Route option, aka Bug ID CSCuq57512.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Zyxel GS1900-10HP firmware | <2.50\(aazi.0\)c0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-6398 is classified as High due to its potential to cause a denial of service.
To fix CVE-2015-6398, upgrade the Cisco Nexus 9000 switches to software version 11.0(1c) or later.
CVE-2015-6398 describes a remote denial of service attack that can be executed using a specially crafted IPv4 ICMP packet.
CVE-2015-6398 affects Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches running software versions prior to 11.0(1c).
The impact of CVE-2015-6398 is a device reload, which results in downtime and service interruption.