Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.105645
Kategorie:CISCO
Titel:Cisco NX-OS Software TCP Netstack Denial of Service Vulnerability (cisco-sa-20160302-netstack)
Zusammenfassung:A vulnerability in the TCP stack of Cisco NX-OS Software could; allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.
Beschreibung:Summary:
A vulnerability in the TCP stack of Cisco NX-OS Software could
allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition.

Vulnerability Insight:
The vulnerability is due to improper processing of certain TCP
packets in the closing sequence of a TCP session while the affected device is in a TIME_WAIT
state. An attacker could exploit this vulnerability by sending a specific TCP packet to an
affected device on a TCP session that is already in a TIME_WAIT state.

Vulnerability Impact:
An exploit could allow the attacker to cause a reload of the TCP
stack on the affected device, resulting in a DoS condition.

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2015-0718
Cisco Security Advisory: 20160302 Cisco NX-OS Software TCP Netstack Denial of Service Vulnerability
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160302-netstack
http://www.securitytracker.com/id/1035159
http://www.securitytracker.com/id/1035160
CopyrightCopyright (C) 2016 Greenbone Networks GmbH

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.