CVE-2019-1964: Cisco NX-OS Software IPv6 Denial of Service Vulnerability
A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device. The vulnerability is due to improper validation of IPv6 traffic sent through an affected device. An attacker could exploit this vulnerability by sending a malformed IPv6 packet through an affected device. A successful exploit could allow the attacker to cause a denial of service (DoS) condition while the netstack process restarts. A sustained attack could lead to a reboot of the device.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-1964?
CVE-2019-1964 is a vulnerability in the IPv6 traffic processing of Cisco NX-OS Software that could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device.
What is the severity of CVE-2019-1964?
The severity of CVE-2019-1964 is high with a CVSS score of 7.5.
Which software versions are affected by CVE-2019-1964?
Cisco NX-OS Software versions 8.1 to 8.2(3) and versions 8.3 to 8.4 are affected by CVE-2019-1964.
How can an attacker exploit CVE-2019-1964?
An attacker can exploit CVE-2019-1964 by sending malicious IPv6 traffic through the affected device.
How can I fix or mitigate CVE-2019-1964?
Cisco has released software updates to address CVE-2019-1964. It is recommended to update to a fixed software version as soon as possible.