CVE-2021-1586: Cisco Nexus 9000 Series Fabric Switches ACI Mode Multi-Pod and Multi-Site TCP Denial of Service Vulnerability
A vulnerability in the Multi-Pod or Multi-Site network configurations for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, remote attacker to unexpectedly restart the device, resulting in a denial of service (DoS) condition. This vulnerability exists because TCP traffic sent to a specific port on an affected device is not properly sanitized. An attacker could exploit this vulnerability by sending crafted TCP data to a specific port that is listening on a public-facing IP address for the Multi-Pod or Multi-Site configuration. A successful exploit could allow the attacker to cause the device to restart unexpectedly, resulting in a DoS condition.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-1586?
CVE-2021-1586 is a vulnerability in the Multi-Pod or Multi-Site network configurations for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode.
What is the severity of CVE-2021-1586?
The severity of CVE-2021-1586 is high, with a severity value of 8.6.
How can an unauthenticated, remote attacker exploit CVE-2021-1586?
An unauthenticated, remote attacker can exploit CVE-2021-1586 to unexpectedly restart the device, resulting in a denial of service (DoS) condition.
Which software versions are affected by CVE-2021-1586?
CVE-2021-1586 affects Cisco Nexus 9000 Series Fabric Switches running Cisco NX-OS 15.0(2e) and 15.1(1h).
Where can I find more information about CVE-2021-1586?
You can find more information about CVE-2021-1586 on the Cisco Security Advisory page: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-n9kaci-tcp-dos-YXukt6gM