First published: Wed Aug 25 2021(Updated: )
A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation when an affected device is processing an MPLS echo-request or echo-reply packet. An attacker could exploit this vulnerability by sending malicious MPLS echo-request or echo-reply packets to an interface that is enabled for MPLS forwarding on the affected device. A successful exploit could allow the attacker to cause the MPLS OAM process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Nx-os | =7.0\(3\)i7\(9\) | |
Cisco Nx-os | =8.4\(1\) | |
Cisco Nx-os | =9.3\(7\) | |
Cisco Nexus 3000 | ||
Cisco Nexus 3048 | ||
Cisco Nexus 31108pc-v | ||
Cisco Nexus 31108tc-v | ||
Cisco Nexus 31128pq | ||
Cisco Nexus 3132c-z | ||
Cisco Nexus 3132q-v | ||
Cisco Nexus 3132q-x\/3132q-xl | ||
Cisco Nexus 3164q | ||
Cisco Nexus 3172pq\/pq-xl | ||
Cisco Nexus 3172tq-xl | ||
Cisco Nexus 3232c | ||
Cisco Nexus 3264c-e | ||
Cisco Nexus 3264q | ||
Cisco Nexus 3408-s | ||
Cisco Nexus 34180yc | ||
Cisco Nexus 3432d-s | ||
Cisco Nexus 3464c | ||
Cisco Nexus 3524-x\/xl | ||
Cisco Nexus 3548-x\/xl | ||
Cisco Nexus 36180yc-r | ||
Cisco Nexus 3636c-r | ||
Cisco Nexus 7000 10-slot | ||
Cisco Nexus 7000 18-slot | ||
Cisco Nexus 7000 4-slot | ||
Cisco Nexus 7000 9-slot | ||
Cisco Nexus 9000v | ||
Cisco Nexus 92160yc-x | ||
Cisco Nexus 92300yc | ||
Cisco Nexus 92304qc | ||
Cisco Nexus 92348gc-x | ||
Cisco Nexus 9236c | ||
Cisco Nexus 9272q | ||
Cisco Nexus 93108tc-ex | ||
Cisco Nexus 93108tc-ex-24 | ||
Cisco Nexus 93108tc-fx | ||
Cisco Nexus 93108tc-fx-24 | ||
Cisco Nexus 93108tc-fx3p | ||
Cisco Nexus 93120tx | ||
Cisco Nexus 93128tx | ||
Cisco Nexus 9316d-gx | ||
Cisco Nexus 93180lc-ex | ||
Cisco Nexus 93180yc-ex | ||
Cisco Nexus 93180yc-ex-24 | ||
Cisco Nexus 93180yc-fx | ||
Cisco Nexus 93180yc-fx-24 | ||
Cisco Nexus 93180yc-fx3 | ||
Cisco Nexus 93180yc-fx3s | ||
Cisco Nexus 93216tc-fx2 | ||
Cisco Nexus 93240yc-fx2 | ||
Cisco Nexus 9332c | ||
Cisco Nexus 9332pq | ||
Cisco Nexus 93360yc-fx2 | ||
Cisco Nexus 9336c-fx2 | ||
Cisco Nexus 9336c-fx2-e | ||
Cisco Nexus 9348gc-fxp | ||
Cisco Nexus 93600cd-gx | ||
Cisco Nexus 9364c | ||
Cisco Nexus 9364c-gx | ||
Cisco Nexus 9372px | ||
Cisco Nexus 9372px-e | ||
Cisco Nexus 9372tx | ||
Cisco Nexus 9372tx-e | ||
Cisco Nexus 9396px | ||
Cisco Nexus 9396tx | ||
Cisco Nexus 9508 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.