CVE-2015-6295
published 2015-09-20CVE-2015-6295: Cisco NX-OS 6.1(2)I3(4) and 7.0(3)I1(1) on Nexus 9000 (N9K) devices allows remote attackers to cause a denial of service (CPU consumption or control-plane…
PriorityP420medium4.8CVSS 2.0
AVAACLAuNCPINAP
EPSS
0.79%
52.4th percentile
Cisco NX-OS 6.1(2)I3(4) and 7.0(3)I1(1) on Nexus 9000 (N9K) devices allows remote attackers to cause a denial of service (CPU consumption or control-plane instability) or trigger unintended traffic forwarding via a Layer 2 packet with a reserved VLAN number, aka Bug ID CSCuw13560.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
CVSS provenance
nvdv2.04.8MEDIUMAV:A/AC:L/Au:N/C:P/I:N/A:P
vendor_cisco4.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
vendor_cisco·2015-09-16·CVSS 4.8
CVE-2015-6295 [MEDIUM] CWE-399 Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
Cisco Nexus 9000 Series Switches Reserved VLAN Number Vulnerability
A vulnerability in the handling of incoming Layer 2 packets tagged with a Cisco Nexus 9000 Series Switch (N9K) reserved VLAN number could allow an unauthenticated, adjacent attacker to cause a partial denial of service (DoS) condition due to increased CPU utilization and possible control plane instability. In addition, Layer 2 packets, which should be dropped by the switch, may be incorrectly forwarded to the connected interfaces.
The vulnerability is due to lack of validation of the VLAN number in the Layer 2 packet. An attacker could exploit this vulnerability by sending a crafted Layer 2 packet tagged with an N9K reserved VLAN number. An exploit could allow the attacker to cause a partial DoS condition due to increase
GHSA
GHSA-v69f-xfrj-cq2p: Cisco NX-OS 6
ghsa_unreviewed·2022-05-17
CVE-2015-6295 [MEDIUM] GHSA-v69f-xfrj-cq2p: Cisco NX-OS 6
Cisco NX-OS 6.1(2)I3(4) and 7.0(3)I1(1) on Nexus 9000 (N9K) devices allows remote attackers to cause a denial of service (CPU consumption or control-plane instability) or trigger unintended traffic forwarding via a Layer 2 packet with a reserved VLAN number, aka Bug ID CSCuw13560.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-09-20
Published