CVE-2021-1588
Summary
| CVE | CVE-2021-1588 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-08-25 20:15:00 UTC |
| Updated | 2023-11-07 03:28:00 UTC |
| Description | A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation when an affected device is processing an MPLS echo-request or echo-reply packet. An attacker could exploit this vulnerability by sending malicious MPLS echo-request or echo-reply packets to an interface that is enabled for MPLS forwarding on the affected device. A successful exploit could allow the attacker to cause the MPLS OAM process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition. |
Risk And Classification
Problem Types: CWE-20 | CWE-125
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Cisco | Nexus 3000 | - | All | All | All |
| Hardware | Cisco | Nexus 3048 | - | All | All | All |
| Hardware | Cisco | Nexus 31108pc-v | - | All | All | All |
| Hardware | Cisco | Nexus 31108tc-v | - | All | All | All |
| Hardware | Cisco | Nexus 31128pq | - | All | All | All |
| Hardware | Cisco | Nexus 3132c-z | - | All | All | All |
| Hardware | Cisco | Nexus 3132q-v | - | All | All | All |
| Hardware | Cisco | Nexus 3132q-x/3132q-xl | - | All | All | All |
| Hardware | Cisco | Nexus 3164q | - | All | All | All |
| Hardware | Cisco | Nexus 3172pq/pq-xl | - | All | All | All |
| Hardware | Cisco | Nexus 3172tq-xl | - | All | All | All |
| Hardware | Cisco | Nexus 3232c | - | All | All | All |
| Hardware | Cisco | Nexus 3264c-e | - | All | All | All |
| Hardware | Cisco | Nexus 3264q | - | All | All | All |
| Hardware | Cisco | Nexus 3408-s | - | All | All | All |
| Hardware | Cisco | Nexus 34180yc | - | All | All | All |
| Hardware | Cisco | Nexus 3432d-s | - | All | All | All |
| Hardware | Cisco | Nexus 3464c | - | All | All | All |
| Hardware | Cisco | Nexus 3524-x/xl | - | All | All | All |
| Hardware | Cisco | Nexus 3548-x/xl | - | All | All | All |
| Hardware | Cisco | Nexus 36180yc-r | - | All | All | All |
| Hardware | Cisco | Nexus 3636c-r | - | All | All | All |
| Hardware | Cisco | Nexus 7000 10-slot | - | All | All | All |
| Hardware | Cisco | Nexus 7000 18-slot | - | All | All | All |
| Hardware | Cisco | Nexus 7000 4-slot | - | All | All | All |
| Hardware | Cisco | Nexus 7000 9-slot | - | All | All | All |
| Hardware | Cisco | Nexus 9000v | - | All | All | All |
| Hardware | Cisco | Nexus 92160yc-x | - | All | All | All |
| Hardware | Cisco | Nexus 92300yc | - | All | All | All |
| Hardware | Cisco | Nexus 92304qc | - | All | All | All |
| Hardware | Cisco | Nexus 92348gc-x | - | All | All | All |
| Hardware | Cisco | Nexus 9236c | - | All | All | All |
| Hardware | Cisco | Nexus 9272q | - | All | All | All |
| Hardware | Cisco | Nexus 93108tc-ex | - | All | All | All |
| Hardware | Cisco | Nexus 93108tc-ex-24 | - | All | All | All |
| Hardware | Cisco | Nexus 93108tc-fx | - | All | All | All |
| Hardware | Cisco | Nexus 93108tc-fx-24 | - | All | All | All |
| Hardware | Cisco | Nexus 93108tc-fx3p | - | All | All | All |
| Hardware | Cisco | Nexus 93120tx | - | All | All | All |
| Hardware | Cisco | Nexus 93128tx | - | All | All | All |
| Hardware | Cisco | Nexus 9316d-gx | - | All | All | All |
| Hardware | Cisco | Nexus 93180lc-ex | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-ex | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-ex-24 | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-fx | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-fx-24 | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-fx3 | - | All | All | All |
| Hardware | Cisco | Nexus 93180yc-fx3s | - | All | All | All |
| Hardware | Cisco | Nexus 93216tc-fx2 | - | All | All | All |
| Hardware | Cisco | Nexus 93240yc-fx2 | - | All | All | All |
| Hardware | Cisco | Nexus 9332c | - | All | All | All |
| Hardware | Cisco | Nexus 9332pq | - | All | All | All |
| Hardware | Cisco | Nexus 93360yc-fx2 | - | All | All | All |
| Hardware | Cisco | Nexus 9336c-fx2 | - | All | All | All |
| Hardware | Cisco | Nexus 9336c-fx2-e | - | All | All | All |
| Hardware | Cisco | Nexus 9348gc-fxp | - | All | All | All |
| Hardware | Cisco | Nexus 93600cd-gx | - | All | All | All |
| Hardware | Cisco | Nexus 9364c | - | All | All | All |
| Hardware | Cisco | Nexus 9364c-gx | - | All | All | All |
| Hardware | Cisco | Nexus 9372px | - | All | All | All |
| Hardware | Cisco | Nexus 9372px-e | - | All | All | All |
| Hardware | Cisco | Nexus 9372tx | - | All | All | All |
| Hardware | Cisco | Nexus 9372tx-e | - | All | All | All |
| Hardware | Cisco | Nexus 9396px | - | All | All | All |
| Hardware | Cisco | Nexus 9396tx | - | All | All | All |
| Hardware | Cisco | Nexus 9508 | - | All | All | All |
| Operating System | Cisco | Nx-os | 7.0\(3\)i7\(9\) | All | All | All |
| Operating System | Cisco | Nx-os | 8.4\(1\) | All | All | All |
| Operating System | Cisco | Nx-os | 9.3\(7\) | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Cisco NX-OS Software MPLS OAM Denial of Service Vulnerability | CISCO | tools.cisco.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 317016 Cisco NX-OS Software MPLS OAM Denial of Service Vulnerability (cisco-sa-nxos-mpls-oam-dos-sGO9x5GM)