QID 317252
Date Published: 2022-11-15
QID 317252: Cisco Catalyst 6500 and 6800 Series Switches Bypass Configured First-hop Security (FHS) Vulnerability (cisco-sa-VU855201-J3z8CKTX)
A vulnerability in the processing of stacked Ethernet tag headers of multiple Cisco products could allow an unauthenticated, adjacent attacker to bypass the FHS feature of an affected device.
QID Detection Logic (Unauthenticated):
The check matches Cisco IOS XE version retrieved via SNMP or TCP/IP Fingerprint or NTP or Telnet.
A successful exploit could allow the attacker to bypass the FHS feature of an affected device.
Solution
Customers are advised to refer to cisco-sa-VU855201-J3z8CKTX for more information.
Vendor References
- cisco-sa-VU855201-J3z8CKTX -
www.cisco.com/c/en/us/support/docs/csa/cisco-sa-VU855201-J3z8CKTX.html#vp
CVEs related to QID 317252
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-VU855201-J3z8CKTX |
|