QID 317015
Date Published: 2021-08-26
QID 317015: Cisco NX-OS Software VXLAN OAM (NGOAM) Denial of Service Vulnerability (cisco-sa-nxos-ngoam-dos-LTDb9Hv)
A vulnerability in the VXLAN Operation, Administration, and Maintenance (OAM) feature
of Cisco NX-OS Software, known as NGOAM, could allow an unauthenticated,
remote attacker to cause a denial of service (DoS) condition on an affected device.
Affected Products
Following Cisco products if they are running a vulnerable release of Cisco NX-OS Software,
they have the NGOAM feature enabled, and they are configured with a virtual port channel (vPC) peer:
Nexus 3000 Series Switches
Nexus 9000 Series Switches in standalone NX-OS mode
QID Detection Logic(Authenticated):
It checks for vulnerable version of Cisco NX-OS using show version Command.
A successful exploit could allow the attacker to cause an affected device to experience
high CPU usage and consume excessive system resources, which may result
in overall control plane instability and cause the affected device to reload.
Customers are advised to refer to cisco-sa-nxos-ngoam-dos-LTDb9Hv for more information.
- cisco-sa-nxos-ngoam-dos-LTDb9Hv -
tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-ngoam-dos-LTDb9Hv
CVEs related to QID 317015
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-nxos-ngoam-dos-LTDb9Hv |
|