CVE-2011-0355
published 2011-02-17CVE-2011-0355: Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(1) through SV1(3b), as used in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, does not properly handle…
PriorityP337high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
1.98%
78.3th percentile
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(1) through SV1(3b), as used in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, does not properly handle dropped packets, which allows guest OS users to cause a denial of service (ESX or ESXi host OS crash) by sending an 802.1Q tagged packet over an access vEthernet port, aka Cisco Bug ID CSCtj17451.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | 1000v_virtual_ethernet_module | — | — |
| vmware | esx | — | — |
| vmware | esx | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
| vmware | esxi | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
Cisco Nexus 1000V VEM updates address denial of service in VMware ESX/ESXi
vendor_vmware·2011-02-07·CVSS 7.8
CVE-2011-0355 [HIGH] Cisco Nexus 1000V VEM updates address denial of service in VMware ESX/ESXi
VMSA-2011-0002: Cisco Nexus 1000V VEM updates address denial of service in VMware ESX/ESXi
a. Cisco Nexus 1000V Virtual Ethernet Module denial of service The Cisco Nexus 1000V Virtual Ethernet Module (VEM) is a virtual switch for ESX and ESXi. This switch can be added to ESX and ESXi where it replaces the VMware virtual switch and runs as part of the ESX and ESXi kernel. A flaw in the handling of dropped packets by Cisco Nexus 1000V VEM can cause ESX and ESXi to crash. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2011-0355 to the issue. The issue is addressed by Cisco in the following releases: Cisco Nexus 1000V Virtual Ethernet Module Release 4.2(4) SV1(4) Cisco Nexus 1000V Virtual Ethernet Module Release 4.0(4) SV1(3c) For details refer to t
GHSA
GHSA-gfg2-2gww-4ffv: Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4
ghsa_unreviewed·2022-05-14
CVE-2011-0355 [HIGH] GHSA-gfg2-2gww-4ffv: Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(1) through SV1(3b), as used in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, does not properly handle dropped packets, which allows guest OS users to cause a denial of service (ESX or ESXi host OS crash) by sending an 802.1Q tagged packet over an access vEthernet port, aka Cisco Bug ID CSCtj17451.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.vmware.com/pipermail/security-announce/2011/000118.htmlhttp://secunia.com/advisories/43084http://securityreason.com/securityalert/8090http://securitytracker.com/id?1025030http://www.cisco.com/en/US/docs/switches/datacenter/nexus1000/sw/4_0_4_s_v_1_3_c/release/notes/n1000v_rn.htmlhttp://www.osvdb.org/70837http://www.securityfocus.com/archive/1/516259/100/0/threadedhttp://www.securityfocus.com/bid/46247http://www.vmware.com/security/advisories/VMSA-2011-0002.htmlhttp://www.vupen.com/english/advisories/2011/0314http://www.vupen.com/english/advisories/2011/0315https://exchange.xforce.ibmcloud.com/vulnerabilities/65217http://lists.vmware.com/pipermail/security-announce/2011/000118.htmlhttp://secunia.com/advisories/43084http://securityreason.com/securityalert/8090http://securitytracker.com/id?1025030http://www.cisco.com/en/US/docs/switches/datacenter/nexus1000/sw/4_0_4_s_v_1_3_c/release/notes/n1000v_rn.htmlhttp://www.osvdb.org/70837http://www.securityfocus.com/archive/1/516259/100/0/threadedhttp://www.securityfocus.com/bid/46247http://www.vmware.com/security/advisories/VMSA-2011-0002.htmlhttp://www.vupen.com/english/advisories/2011/0314http://www.vupen.com/english/advisories/2011/0315https://exchange.xforce.ibmcloud.com/vulnerabilities/65217
2011-02-17
Published