CVE-2019-1965: Cisco NX-OS Software Remote Management Memory Leak Denial of Service Vulnerability

Published Aug 28, 2019
·
Updated

A vulnerability in the Virtual Shell (VSH) session management for Cisco NX-OS Software could allow an authenticated, remote attacker to cause a VSH process to fail to delete upon termination. This can lead to a build-up of VSH processes that overtime can deplete system memory. When there is no system memory available, this can cause unexpected system behaviors and crashes. The vulnerability is due to the VSH process not being properly deleted when a remote management connection to the device is disconnected. An attacker could exploit this vulnerability by repeatedly performing a remote management connection to the device and terminating the connection in an unexpected manner. A successful exploit could allow the attacker to cause the VSH processes to fail to delete, which can lead to a system-wide denial of service (DoS) condition. The attacker must have valid user credentials to log in to the device using the remote management connection.

Affected Software

101 affected components
cisco NX-OS>=5.2<6.2\(29\)
cisco NX-OS>=7.3<8.4
cisco Mds 9132t
cisco Mds 9148s
cisco Mds 9148t
cisco Mds 9216
Cisco Mds 9216a
Cisco Mds 9216i
cisco Mds 9222i
cisco Mds 9250i
cisco Mds 9396s
cisco Mds 9396t
cisco Mds 9506
cisco Mds 9509
cisco Mds 9513
cisco Mds 9706
cisco Mds 9710
cisco Mds 9718
cisco NX-OS>=7.0\(3\)f<9.2
cisco N9k-c9504-fm-r
cisco N9k-c9508-fm-r
cisco N9k-x96136yc-r
cisco N9k-x9636c-r
cisco N9k-x9636c-rx
cisco N9k-x9636q-r
Cisco Nexus 36180yc-r
Cisco Nexus 3636c-r
cisco X96136yc-r
cisco X9636c-r
cisco X9636c-rx
cisco X9636q-r
cisco NX-OS<7.1\(5\)n1\(1b\)
cisco NX-OS>=7.3<7.3\(5\)n1\(1\)
cisco Nexus 5010
Cisco Nexus 5020
cisco Nexus 5548p
cisco Nexus 5548up
cisco Nexus 5596t
cisco Nexus 5596up
cisco Nexus 56128p
cisco Nexus 5624q
cisco Nexus 5648q
cisco Nexus 5672up
cisco Nexus 5672up-16g
cisco Nexus 5696q
cisco Nexus 6001
cisco Nexus 6004
cisco NX-OS<6.2\(22\)
cisco NX-OS>=7.2<7.3\(4\)d1\(1\)
cisco NX-OS>=8.0<8.2\(3\)
cisco NX-OS>=8.3<8.4
cisco 7000 10-slot
cisco 7000 18-slot
cisco 7000 4-slot
cisco 7000 9-slot
cisco 7700 10-slot
cisco 7700 18-slot
cisco 7700 2-slot
cisco 7700 6-slot
cisco N77-f312ck-26
cisco N77-f324fq-25
cisco N77-f348xp-23
cisco N77-f430cq-36
cisco N77-m312cq-26l
cisco N77-m324fq-25l
cisco N77-m348xp-23l
cisco N7k-f248xp-25e
cisco N7k-f306ck-25
cisco N7k-f312fq-25
cisco N7k-m202cf-22l
cisco N7k-m206fq-23l
cisco N7k-m224xp-23l
cisco N7k-m324fq-25l
cisco N7k-m348xp-25l
cisco Nexus 7000 Supervisor 1
cisco Nexus 7000 Supervisor 2
cisco Nexus 7000 Supervisor 2e
cisco Nexus 7700 Supervisor 2e
cisco Nexus 7700 Supervisor 3e
cisco NX-OS<7.0\(3\)i4\(9\)
cisco NX-OS>=7.0\(3\)i7<7.0\(3\)i7\(4\)
cisco N9k-c92160yc-x
cisco N9k-c9236c
cisco N9k-c9272q
cisco N9k-c93180lc-ex
cisco N9k-c93180yc-ex
cisco N9k-c93180yc-fx
cisco N9k-x9732c-ex
cisco N9k-x9736c-fx
cisco Nexus 3048
cisco NX-OS>=7.0\(3\)i7<7.0\(3\)i7\(6\)
cisco NX-OS>=9.2<9.2\(3\)
cisco Nexus 3524-x\/xl
cisco Nexus 3548-x\/xl
cisco NX-OS<3.2\(3k\)
cisco NX-OS>=4.0<4.0\(2e\)
cisco Ucs-6296up
cisco Ucs 6248up
cisco Ucs 6324
cisco Ucs 6332
cisco Ucs 6332-16up

Event History

Aug 28, 2019
CVE Published
via MITRE·06:55 PM
Data Sourced
via MITRE·06:55 PM
DescriptionSeverityWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2019-1965?

CVE-2019-1965 has a moderate severity rating due to its potential to cause a denial of service by depleting system memory.

2

How do I fix CVE-2019-1965?

To fix CVE-2019-1965, update your Cisco NX-OS Software to the patched versions listed in the Cisco security advisory.

3

What devices are affected by CVE-2019-1965?

CVE-2019-1965 affects various versions of Cisco NX-OS, so check the specific version against the affected software list provided by Cisco.

4

How can I check if my Cisco NX-OS is vulnerable to CVE-2019-1965?

You can check if your Cisco NX-OS is vulnerable to CVE-2019-1965 by comparing your version against the affected versions outlined in the Cisco advisory.

5

What are the potential impacts of CVE-2019-1965?

The potential impacts of CVE-2019-1965 include prolonged downtime and performance degradation due to memory depletion from unremoved VSH processes.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203