CVE-2016-1465: Medium severity cisco nx-os vulnerability
Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hypervisor crash and purple screen) via a crafted Cisco Discovery Protocol packet that triggers an out-of-bounds memory access, aka Bug ID CSCuw57985.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1465?
The severity of CVE-2016-1465 is classified as high, leading to potential denial of service.
How do I fix CVE-2016-1465?
To resolve CVE-2016-1465, upgrade your Cisco Nexus 1000V devices to a version that is 5.2(1)SV3(1.5i) or later.
What does CVE-2016-1465 affect?
CVE-2016-1465 affects Cisco Nexus 1000V Application Virtual Switch devices running vulnerable versions of NX-OS.
What type of vulnerability is CVE-2016-1465?
CVE-2016-1465 is a remote denial-of-service vulnerability caused by out-of-bounds memory access.
Can CVE-2016-1465 be exploited remotely?
Yes, CVE-2016-1465 can be exploited remotely by sending a crafted Cisco Discovery Protocol packet.