CVE-2017-6633
published 2017-05-22CVE-2017-6633: A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3.0(0.234) could allow an unauthenticated, remote attacker to cause a denial…
PriorityP342high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
2.14%
80.0th percentile
A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3.0(0.234) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient rate-limiting protection. An attacker could exploit this vulnerability by sending a high rate of TCP SYN packets to a specific TCP listening port on an affected device. An exploit could allow the attacker to cause a specific TCP listening port to stop accepting new connections, resulting in a DoS condition. Cisco Bug IDs: CSCva65544.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | ucs_c-series_rack_servers_tcp_port | — | — |
| cisco | unified_computing_system | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
vendor_cisco·2017-05-17·CVSS 5.8
CVE-2017-6633 [MEDIUM] CWE-119 Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
The vulnerability is due to insufficient rate-limiting protection. An attacker could exploit this vulnerability by sending a high rate of TCP SYN packets to a specific TCP listening port on an affected device. An exploit could allow the attacker to cause a specific TCP listening port to stop accepting new connections, resulting in a DoS condition.
There are no workarounds that address this vulnerability.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurit
Cisco
Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
vendor_cisco·CVSS 3.0
CVE-2017-6633 Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
CVE-2017-6633: Cisco UCS C-Series Rack Servers TCP Port Denial of Service Vulnerability
A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient rate-limiting protection. An attacker could exploit this vulnerability by sending a high rate of TCP SYN packets to a specific TCP listening port on an affected device. An exploit could allow the attacker to cause a specific TCP listening port to stop accepting new connections, resulting in a DoS condition. There are no
CVSS: 3.0
CWE: CWE-119, CWE-119
Bug IDs: CSCva65544
GHSA
GHSA-g9pg-mx97-6ghh: A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3
ghsa_unreviewed·2022-05-17
CVE-2017-6633 [HIGH] CWE-119 GHSA-g9pg-mx97-6ghh: A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3
A vulnerability in the TCP throttling process of Cisco UCS C-Series Rack Servers 3.0(0.234) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to insufficient rate-limiting protection. An attacker could exploit this vulnerability by sending a high rate of TCP SYN packets to a specific TCP listening port on an affected device. An exploit could allow the attacker to cause a specific TCP listening port to stop accepting new connections, resulting in a DoS condition. Cisco Bug IDs: CSCva65544.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/98525http://www.securitytracker.com/id/1038513https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170517-ucschttp://www.securityfocus.com/bid/98525http://www.securitytracker.com/id/1038513https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170517-ucsc
2017-05-22
Published