QID 317066

Date Published: 2021-09-28

QID 317066: Cisco Unified Computing System (UCS) Fabric Interconnect Unidirectional Link Detection Denial of Service (DoS) Vulnerability (cisco-sa-ios-nxos-xr-udld-dos-W5hGHgtQ)

A vulnerability in the Cisco Unified Computing System (UCS) Fabric Interconnect Unidirectional Link Detection (UDLD) feature
of could allow an unauthenticated, adjacent attacker to cause an affected device to reload.

Affected Products:
Cisco UCS 6400 Series Fabric Interconnects devices if they were running a vulnerable release of following Cisco UCS Manager software and had the UDLD feature enabled:
UCS 6200 Series Fabric Interconnects
UCS 6300 Series Fabric Interconnects
UCS 6400 Series Fabric Interconnects
Note: Potential detection as cannot confirm on UDLD configuration.

QID Detection Logic(Authenticated):
It checks for vulnerable version of Cisco UCS using show version Command.

A successful exploit could allow the attacker to cause the affected device to reload, resulting in a denial of service (DoS) condition.

  • CVSS V2 rated as High - 7.5 severity.
  • Solution

    Customers are advised to refer to cisco-sa-ios-nxos-xr-udld-dos-W5hGHgtQ for more information.

    CVEs related to QID 317066

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-ios-nxos-xr-udld-dos-W5hGHgtQ URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ios-nxos-xr-udld-dos-W5hGHgtQ