8.3

CVE-2013-1178

Multiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(4) and 6.x before 6.1(1), Nexus 5000 and 5500 devices 4.x and 5.x before 5.1(3)N1(1), Nexus 4000 devices before 4.1(2)E1(1h), Nexus 3000 devices 5.x before 5.0(3)U3(1), Nexus 1000V devices 4.x before 4.2(1)SV1(5.1), MDS 9000 devices 4.x and 5.x before 5.2(4), Unified Computing System (UCS) 6100 and 6200 devices before 2.0(2m), and Connected Grid Router (CGR) 1000 devices before CG4(1) allow remote attackers to execute arbitrary code via malformed CDP packets, aka Bug IDs CSCtu10630, CSCtu10551, CSCtu10550, CSCtw56581, CSCtu10548, CSCtu10544, and CSCuf61275.

Data is provided by the National Vulnerability Database (NVD)
CiscoNx-os Version4.0
CiscoNx-os Version4.2
CiscoNx-os Version5.0
CiscoNx-os Version5.1
CiscoNx-os Version5.2
CiscoNx-os Version6.1
CiscoNexus 7000 Version-
CiscoNexus 7000 10-slot Version-
CiscoNexus 7000 18-slot Version-
CiscoNexus 7000 9-slot Version-
CiscoNx-os Version4.0
CiscoNx-os Version4.2
CiscoNx-os Version5.0
CiscoNx-os Version5.1
CiscoNx-os Version5.2
CiscoNx-os Version4.0
CiscoNx-os Version4.2
CiscoNx-os Version5.0
CiscoNx-os Version5.1
CiscoNexus 5000 Version-
CiscoNexus 5010 Version-
CiscoNexus 5020 Version-
CiscoNexus 5548p Version-
CiscoNexus 5548up Version-
CiscoNexus 5596up Version-
CiscoNx-os Version <= 4.1.\(2\)
CiscoNx-os Version4.0
CiscoNexus 4001i Version-
CiscoNx-os Version5.0
CiscoNexus 3016q Version-
CiscoNexus 3048 Version-
CiscoNexus 3064t Version-
CiscoNexus 3064x Version-
CiscoNexus 3548 Version-
CiscoNx-os Version4.0
CiscoNx-os Version4.2
CiscoNexus 1000v Version-
CiscoCg-os Version <= cg4
CiscoCg-os Versioncg1
CiscoCg-os Versioncg2
CiscoCg-os Versioncg3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.64% 0.802
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.3 6.5 10
AV:A/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.