8.8

CVE-2022-20824

A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation of specific values that are within a Cisco Discovery Protocol message. An attacker could exploit this vulnerability by sending a malicious Cisco Discovery Protocol packet to an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges or cause the Cisco Discovery Protocol process to crash and restart multiple times, which would cause the affected device to reload, resulting in a DoS condition. Note: Cisco Discovery Protocol is a Layer 2 protocol. To exploit this vulnerability, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoMds 9506 Firmware Version-
   CiscoMds 9506 Version-
CiscoMds 9513 Firmware Version-
   CiscoMds 9513 Version-
CiscoMds 9706 Firmware Version-
   CiscoMds 9706 Version-
CiscoMds 9710 Firmware Version-
   CiscoMds 9710 Version-
CiscoMds 9718 Firmware Version-
   CiscoMds 9718 Version-
CiscoNexus 1000v Firmware Version- SwPlatformvmware_vsphere
   CiscoNexus 1000v Version- SwPlatformvmware_vsphere
CiscoNexus 3016 Firmware Version-
   CiscoNexus 3016 Version-
CiscoNexus 3016q Firmware Version-
   CiscoNexus 3016q Version-
CiscoNexus 3048 Firmware Version-
   CiscoNexus 3048 Version-
CiscoNexus 3064 Firmware Version-
   CiscoNexus 3064 Version-
CiscoNexus 3064-32t Firmware Version-
   CiscoNexus 3064-32t Version-
CiscoNexus 3064-t Firmware Version-
   CiscoNexus 3064-t Version-
CiscoNexus 3064-x Firmware Version-
   CiscoNexus 3064-x Version-
CiscoNexus 3064t Firmware Version-
   CiscoNexus 3064t Version-
CiscoNexus 3064x Firmware Version-
   CiscoNexus 3064x Version-
CiscoNexus 3100 Firmware Version-
   CiscoNexus 3100 Version-
CiscoNexus 3100-v Firmware Version-
   CiscoNexus 3100-v Version-
CiscoNexus 3100-z Firmware Version-
   CiscoNexus 3100-z Version-
CiscoNexus 3100v Firmware Version-
   CiscoNexus 3100v Version-
CiscoNexus 31108pc-v Firmware Version-
   CiscoNexus 31108pc-v Version-
CiscoNexus 31108pv-v Firmware Version-
   CiscoNexus 31108pv-v Version-
CiscoNexus 31108tc-v Firmware Version-
   CiscoNexus 31108tc-v Version-
CiscoNexus 31128pq Firmware Version-
   CiscoNexus 31128pq Version-
CiscoNexus 3132c-z Firmware Version-
   CiscoNexus 3132c-z Version-
CiscoNexus 3132q Firmware Version-
   CiscoNexus 3132q Version-
CiscoNexus 3132q-v Firmware Version-
   CiscoNexus 3132q-v Version-
CiscoNexus 3132q-x Firmware Version-
   CiscoNexus 3132q-x Version-
CiscoNexus 3132q-xl Firmware Version-
   CiscoNexus 3132q-xl Version-
CiscoNexus 3164q Firmware Version-
   CiscoNexus 3164q Version-
CiscoNexus 3172 Firmware Version-
   CiscoNexus 3172 Version-
CiscoNexus 3172pq Firmware Version-
   CiscoNexus 3172pq Version-
CiscoNexus 3172pq-xl Firmware Version-
   CiscoNexus 3172pq-xl Version-
CiscoNexus 3172pq/pq-xl Firmware Version-
   CiscoNexus 3172pq/pq-xl Version-
CiscoNexus 3172tq Firmware Version-
   CiscoNexus 3172tq Version-
CiscoNexus 3172tq-32t Firmware Version-
   CiscoNexus 3172tq-32t Version-
CiscoNexus 3172tq-xl Firmware Version-
   CiscoNexus 3172tq-xl Version-
CiscoNexus 3200 Firmware Version-
   CiscoNexus 3200 Version-
CiscoNexus 3232c Firmware Version-
   CiscoNexus 3232c Version-
CiscoNexus 3232c Firmware Version-
   CiscoNexus 3232c Version-
CiscoNexus 3264c-e Firmware Version-
   CiscoNexus 3264c-e Version-
CiscoNexus 3264q Firmware Version-
   CiscoNexus 3264q Version-
CiscoNexus 3400 Firmware Version-
   CiscoNexus 3400 Version-
CiscoNexus 3408-s Firmware Version-
   CiscoNexus 3408-s Version-
CiscoNexus 34180yc Firmware Version-
   CiscoNexus 34180yc Version-
CiscoNexus 34200yc-sm Firmware Version-
   CiscoNexus 34200yc-sm Version-
CiscoNexus 3432d-s Firmware Version-
   CiscoNexus 3432d-s Version-
CiscoNexus 3464c Firmware Version-
   CiscoNexus 3464c Version-
CiscoNexus 3524 Firmware Version-
   CiscoNexus 3524 Version-
CiscoNexus 3524-x Firmware Version-
   CiscoNexus 3524-x Version-
CiscoNexus 3524-x/xl Firmware Version-
   CiscoNexus 3524-x/xl Version-
CiscoNexus 3524-xl Firmware Version-
   CiscoNexus 3524-xl Version-
CiscoNexus 3548 Firmware Version-
   CiscoNexus 3548 Version-
CiscoNexus 3548-x Firmware Version-
   CiscoNexus 3548-x Version-
CiscoNexus 3548-x/xl Firmware Version-
   CiscoNexus 3548-x/xl Version-
CiscoNexus 3548-xl Firmware Version-
   CiscoNexus 3548-xl Version-
CiscoNexus 36180yc-r Firmware Version-
   CiscoNexus 36180yc-r Version-
CiscoNexus 3636c-r Firmware Version-
   CiscoNexus 3636c-r Version-
CiscoNexus 5548p Firmware Version-
   CiscoNexus 5548p Version-
CiscoNexus 5548up Firmware Version-
   CiscoNexus 5548up Version-
CiscoNexus 5596t Firmware Version-
   CiscoNexus 5596t Version-
CiscoNexus 5596up Firmware Version-
   CiscoNexus 5596up Version-
CiscoNexus 5600 Firmware Version-
   CiscoNexus 5600 Version-
CiscoNexus 56128p Firmware Version-
   CiscoNexus 56128p Version-
CiscoNexus 5624q Firmware Version-
   CiscoNexus 5624q Version-
CiscoNexus 5648q Firmware Version-
   CiscoNexus 5648q Version-
CiscoNexus 5672up Firmware Version-
   CiscoNexus 5672up Version-
CiscoNexus 5672up-16g Firmware Version-
   CiscoNexus 5672up-16g Version-
CiscoNexus 5696q Firmware Version-
   CiscoNexus 5696q Version-
CiscoNexus 6000 Firmware Version-
   CiscoNexus 6000 Version-
CiscoNexus 6001 Firmware Version-
   CiscoNexus 6001 Version-
CiscoNexus 6001p Firmware Version-
   CiscoNexus 6001p Version-
CiscoNexus 6001t Firmware Version-
   CiscoNexus 6001t Version-
CiscoNexus 6004 Firmware Version-
   CiscoNexus 6004 Version-
CiscoNexus 6004x Firmware Version-
   CiscoNexus 6004x Version-
CiscoNexus 7000 Firmware Version-
   CiscoNexus 7000 Version-
CiscoNexus 7004 Firmware Version-
   CiscoNexus 7004 Version-
CiscoNexus 7009 Firmware Version-
   CiscoNexus 7009 Version-
CiscoNexus 7010 Firmware Version-
   CiscoNexus 7010 Version-
CiscoNexus 7018 Firmware Version-
   CiscoNexus 7018 Version-
CiscoNexus 7700 Firmware Version-
   CiscoNexus 7700 Version-
CiscoNexus 7702 Firmware Version-
   CiscoNexus 7702 Version-
CiscoNexus 7706 Firmware Version-
   CiscoNexus 7706 Version-
CiscoNexus 7710 Firmware Version-
   CiscoNexus 7710 Version-
CiscoNexus 7718 Firmware Version-
   CiscoNexus 7718 Version-
CiscoNexus 9000 Firmware Version-
   CiscoNexus 9000 Version-
CiscoNexus 9000v Firmware Version-
   CiscoNexus 9000v Version-
CiscoNexus 9200 Firmware Version-
   CiscoNexus 9200 Version-
CiscoNexus 92160yc-x Firmware Version-
   CiscoNexus 92160yc-x Version-
CiscoNexus 9221c Firmware Version-
   CiscoNexus 9221c Version-
CiscoNexus 92300yc Firmware Version-
   CiscoNexus 92300yc Version-
CiscoNexus 92304qc Firmware Version-
   CiscoNexus 92304qc Version-
CiscoNexus 92348gc-x Firmware Version-
   CiscoNexus 92348gc-x Version-
CiscoNexus 9236c Firmware Version-
   CiscoNexus 9236c Version-
CiscoNexus 9272q Firmware Version-
   CiscoNexus 9272q Version-
CiscoNexus 9300 Firmware Version-
   CiscoNexus 9300 Version-
CiscoNexus 93108tc-ex Firmware Version-
   CiscoNexus 93108tc-ex Version-
CiscoNexus 93108tc-fx Firmware Version-
   CiscoNexus 93108tc-fx Version-
CiscoNexus 93108tc-fx3p Firmware Version-
   CiscoNexus 93108tc-fx3p Version-
CiscoNexus 93120tx Firmware Version-
   CiscoNexus 93120tx Version-
CiscoNexus 93128 Firmware Version-
   CiscoNexus 93128 Version-
CiscoNexus 93128tx Firmware Version-
   CiscoNexus 93128tx Version-
CiscoNexus 9316d-gx Firmware Version-
   CiscoNexus 9316d-gx Version-
CiscoNexus 93180lc-ex Firmware Version-
   CiscoNexus 93180lc-ex Version-
CiscoNexus 93180tc-ex Firmware Version-
   CiscoNexus 93180tc-ex Version-
CiscoNexus 93180yc-ex Firmware Version-
   CiscoNexus 93180yc-ex Version-
CiscoNexus 93180yc-fx Firmware Version-
   CiscoNexus 93180yc-fx Version-
CiscoNexus 93180yc-fx3 Firmware Version-
   CiscoNexus 93180yc-fx3 Version-
CiscoNexus 93180yc-fx3s Firmware Version-
   CiscoNexus 93180yc-fx3s Version-
CiscoNexus 93216tc-fx2 Firmware Version-
   CiscoNexus 93216tc-fx2 Version-
CiscoNexus 93240yc-fx2 Firmware Version-
   CiscoNexus 93240yc-fx2 Version-
CiscoNexus 9332c Firmware Version-
   CiscoNexus 9332c Version-
CiscoNexus 9332pq Firmware Version-
   CiscoNexus 9332pq Version-
CiscoNexus 93360yc-fx2 Firmware Version-
   CiscoNexus 93360yc-fx2 Version-
CiscoNexus 9336c-fx2 Firmware Version-
   CiscoNexus 9336c-fx2 Version-
CiscoNexus 9336c-fx2-e Firmware Version-
   CiscoNexus 9336c-fx2-e Version-
CiscoNexus 9336pq Firmware Version-
   CiscoNexus 9336pq Version-
CiscoNexus 9348gc-fxp Firmware Version-
   CiscoNexus 9348gc-fxp Version-
CiscoNexus 93600cd-gx Firmware Version-
   CiscoNexus 93600cd-gx Version-
CiscoNexus 9364c Firmware Version-
   CiscoNexus 9364c Version-
CiscoNexus 9364c-gx Firmware Version-
   CiscoNexus 9364c-gx Version-
CiscoNexus 9372px Firmware Version-
   CiscoNexus 9372px Version-
CiscoNexus 9372px-e Firmware Version-
   CiscoNexus 9372px-e Version-
CiscoNexus 9372tx Firmware Version-
   CiscoNexus 9372tx Version-
CiscoNexus 9372tx-e Firmware Version-
   CiscoNexus 9372tx-e Version-
CiscoNexus 9396px Firmware Version-
   CiscoNexus 9396px Version-
CiscoNexus 9396tx Firmware Version-
   CiscoNexus 9396tx Version-
CiscoNexus 9500r Firmware Version-
   CiscoNexus 9500r Version-
CiscoNexus 9504 Firmware Version-
   CiscoNexus 9504 Version-
CiscoNexus 9508 Firmware Version-
   CiscoNexus 9508 Version-
CiscoNexus 9516 Firmware Version-
   CiscoNexus 9516 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.09% 0.263
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
psirt@cisco.com 8.8 2.8 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-121 Stack-based Buffer Overflow

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.