CVE-2013-0570
Summary
| CVE | CVE-2013-0570 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-07-13 21:29:00 UTC |
| Updated | 2018-09-10 12:50:00 UTC |
| Description | The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166. |
Risk And Classification
Problem Types: CWE-200
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Ibm | Flex System Fabric Cn4093 | - | All | All | All |
| Hardware | Ibm | Flex System Fabric Cn4093 | - | All | All | All |
| Hardware | Ibm | Flex System Fabric En4093 | - | All | All | All |
| Hardware | Ibm | Flex System Fabric En4093 | - | All | All | All |
| Hardware | Ibm | Flex System Si4093 | - | All | All | All |
| Hardware | Ibm | Flex System Si4093 | - | All | All | All |
| Operating System | Ibm | Network Operating System | - | All | All | All |
| Operating System | Ibm | Network Operating System | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124 | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124 | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124-e | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124-e | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124-er | - | All | All | All |
| Hardware | Ibm | Rackswitch G8124-er | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264 | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264 | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264-t | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264-t | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264cs | - | All | All | All |
| Hardware | Ibm | Rackswitch G8264cs | - | All | All | All |
| Hardware | Ibm | Rackswitch G8316 | - | All | All | All |
| Hardware | Ibm | Rackswitch G8316 | - | All | All | All |
| Hardware | Ibm | Virtual Fabric | - | All | All | All |
| Hardware | Ibm | Virtual Fabric | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | VDB Entry, Vendor Advisory |
| Security Bulletin: IBM Switches flood Fibre Channel-over-Ethernet (FCoE) data frame out of every port if destination address is not in MAC table (CVE-2013-0570) | CONFIRM | www-304.ibm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.