CVE-2019-1962
published 2019-08-28CVE-2019-1962: A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which…
PriorityP344high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
1.98%
78.5th percentile
A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which can result in a denial of service (DoS) condition on an affected system. The vulnerability is due to insufficient validation of TCP packets when processed by the Cisco Fabric Services over IP (CFSoIP) feature. An attacker could exploit this vulnerability by sending a malicious Cisco Fabric Services TCP packet to an affected device. A successful exploit could allow the attacker to cause process crashes, resulting in a device reload and a DoS condition. Note: There are three distribution methods that can be configured for Cisco Fabric Services. This vulnerability affects only distribution method CFSoIP, which is disabled by default. See the Details section for more information.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_unified_computing_system | >= unspecified < 8.4(1) | 8.4(1) |
| cisco | nx-os | < 7.1\(5\)n1\(1b\) | 7.1\(5\)n1\(1b\) |
| cisco | nx-os | < 6.2\(22\) | 6.2\(22\) |
| cisco | nx-os | < 7.0\(3\)i4\(9\) | 7.0\(3\)i4\(9\) |
| cisco | nx-os | < 6.0\(2\)a8\(11\) | 6.0\(2\)a8\(11\) |
| cisco | nx-os | < 3.2\(3i\) | 3.2\(3i\) |
| cisco | nx-os | — | — |
| cisco | nx-os | >= 4.0 < 4.0\(2d\) | 4.0\(2d\) |
| cisco | nx-os | >= 5.2 < 6.2\(29\) | 6.2\(29\) |
| cisco | nx-os | >= 7.0\(3\)f < 9.2 | 9.2 |
| cisco | nx-os | >= 7.0\(3\)i7 < 7.0\(3\)i7\(6\) | 7.0\(3\)i7\(6\) |
| cisco | nx-os | >= 7.2 < 7.3\(4\)d1\(1\) | 7.3\(4\)d1\(1\) |
| cisco | nx-os | >= 7.3 < 8.1 | 8.1 |
| cisco | nx-os | >= 7.3 < 7.3\(5\)n1\(1\) | 7.3\(5\)n1\(1\) |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
vendor_cisco8.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3x69-qg6m-7562: A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashe
ghsa_unreviewed·2022-05-24
CVE-2019-1962 [HIGH] CWE-20 GHSA-3x69-qg6m-7562: A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashe
A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which can result in a denial of service (DoS) condition on an affected system. The vulnerability is due to insufficient validation of TCP packets when processed by the Cisco Fabric Services over IP (CFSoIP) feature. An attacker could exploit this vulnerability by sending a malicious Cisco Fabric Services TCP packet to an affected device. A successful exploit could allow the attacker to cause process crashes, resulting in a device reload and a DoS condition. Note: There are three distribution methods that can be configured for Cisco Fabric Services. This vulnerability affects only distribution method CFSoIP, which is disabled by default. Se
Cisco
Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
vendor_cisco·2019-08-28·CVSS 8.6
CVE-2019-1962 [HIGH] CWE-20 Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which can result in a denial of service (DoS) condition on an affected system.
The vulnerability is due to insufficient validation of TCP packets when processed by the Cisco Fabric Services over IP (CFSoIP) feature. An attacker could exploit this vulnerability by sending a malicious Cisco Fabric Services TCP packet to an affected device. A successful exploit could allow the attacker to cause process crashes, resulting in a device reload and a DoS condition.
Note: There are three distribution methods that can be configured for Cisco Fabric Services. This vul
Cisco
Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
vendor_cisco·CVSS 3.0
CVE-2019-1962 Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
CVE-2019-1962: Cisco NX-OS Software Cisco Fabric Services over IP Denial of Service Vulnerability
A vulnerability in the Cisco Fabric Services component of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause process crashes, which can result in a denial of service (DoS) condition on an affected system. The vulnerability is due to insufficient validation of TCP packets when processed by the Cisco Fabric Services over IP (CFSoIP) feature. An attacker could exploit this vulnerability by sending a malicious Cisco Fabric Services TCP packet to an affected device. A successful exploit could allow the attacker to cause process crashes, resulting in a device reload and a DoS condition. Note: There are three distribution methods that can be configured for Cisco Fabric Serv
No detection rules found.
No public exploits indexed.
Talos
Threat Source newsletter (Sept. 5, 2019)
blogs_talos·2019-09-05
Threat Source newsletter (Sept. 5, 2019)
Newsletter compiled by Jon Munshaw.
Welcome to this week’s Threat Source newsletter — the perfect place to get caught up on all things Talos from the past week.
By now, nearly everyone has heard of BlueKeep. It definitely sounds scary, with of this talk of wormable bugs and WannaCry. But so far, no attackers have used it to launch a large-scale attack.
Of course, we knew this wouldn’t stay quiet forever. Last month, Microsoft disclosed more RDP vulnerabilities in what’s being called “DejaBlue.” These are another set of wormable bugs, but we have a walkthrough for how Cisco Firepower customers can stay protected.
Elsewhere on the vulnerability front, we have advisories out for an information disclosure in Blynk-Library and two bugs in Epignosis eFront.
We also have our weekly Threat Ro
Talos
Threat Source newsletter (Sept. 5, 2019)
blogs_talos·2019-09-05
Threat Source newsletter (Sept. 5, 2019)
## Threat Source newsletter (Sept. 5, 2019)
Newsletter compiled by Jon Munshaw.
Welcome to this week’s Threat Source newsletter — the perfect place to get caught up on all things Talos from the past week.
By now, nearly everyone has heard of BlueKeep. It definitely sounds scary, with of this talk of wormable bugs and WannaCry. But so far, no attackers have used it to launch a large-scale attack.
Of course, we knew this wouldn’t stay quiet forever. Last month, Microsoft disclosed more RDP vulnerabilities in what’s being called “DejaBlue.” These are another set of wormable bugs, but we have a walkthrough for how Cisco Firepower customers can stay protected.
Elsewhere on the vulnerability front, we have advisories out for an information disclosure in Blynk-Library and two bugs in Epignos
2019-08-28
Published