CVE-2019-1965: Cisco NX-OS Software Remote Management Memory Leak Denial of Service Vulnerability
A vulnerability in the Virtual Shell (VSH) session management for Cisco NX-OS Software could allow an authenticated, remote attacker to cause a VSH process to fail to delete upon termination. This can lead to a build-up of VSH processes that overtime can deplete system memory. When there is no system memory available, this can cause unexpected system behaviors and crashes. The vulnerability is due to the VSH process not being properly deleted when a remote management connection to the device is disconnected. An attacker could exploit this vulnerability by repeatedly performing a remote management connection to the device and terminating the connection in an unexpected manner. A successful exploit could allow the attacker to cause the VSH processes to fail to delete, which can lead to a system-wide denial of service (DoS) condition. The attacker must have valid user credentials to log in to the device using the remote management connection.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1965?
CVE-2019-1965 has a moderate severity rating due to its potential to cause a denial of service by depleting system memory.
How do I fix CVE-2019-1965?
To fix CVE-2019-1965, update your Cisco NX-OS Software to the patched versions listed in the Cisco security advisory.
What devices are affected by CVE-2019-1965?
CVE-2019-1965 affects various versions of Cisco NX-OS, so check the specific version against the affected software list provided by Cisco.
How can I check if my Cisco NX-OS is vulnerable to CVE-2019-1965?
You can check if your Cisco NX-OS is vulnerable to CVE-2019-1965 by comparing your version against the affected versions outlined in the Cisco advisory.
What are the potential impacts of CVE-2019-1965?
The potential impacts of CVE-2019-1965 include prolonged downtime and performance degradation due to memory depletion from unremoved VSH processes.