QID 317015

Date Published: 2021-08-26

QID 317015: Cisco NX-OS Software VXLAN OAM (NGOAM) Denial of Service Vulnerability (cisco-sa-nxos-ngoam-dos-LTDb9Hv)

A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature
of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated,
remote attacker to cause a denial of service (DoS) condition on an affected device.

Affected Products
Following Cisco products if they are running a vulnerable release of Cisco NX-OS Software,
they have the NGOAM feature enabled, and they are configured with a virtual port channel (vPC) peer:
Nexus 3000 Series Switches
Nexus 9000 Series Switches in standalone NX-OS mode

QID Detection Logic(Authenticated):
It checks for vulnerable version of Cisco NX-OS using show version Command.

A successful exploit could allow the attacker to cause an affected device to experience
high CPU usage and consume excessive system resources, which may result
in overall control plane instability and cause the affected device to reload.

  • CVSS V2 rated as High - 7.5 severity.
  • Solution

    Customers are advised to refer to cisco-sa-nxos-ngoam-dos-LTDb9Hv for more information.

    CVEs related to QID 317015

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-nxos-ngoam-dos-LTDb9Hv URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-ngoam-dos-LTDb9Hv