← Back

CVE-2019-1750

nvd nist
Published: Mar 28, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.4
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 4.0
Source: NVD

Description

A vulnerability in the Easy Virtual Switching System (VSS) of Cisco IOS XE Software on Catalyst 4500 Series Switches could allow an unauthenticated, adjacent attacker to cause the switches to reload. The vulnerability is due to incomplete error handling when processing Cisco Discovery Protocol (CDP) packets used with the Easy Virtual Switching System. An attacker could exploit this vulnerability by sending a specially crafted CDP packet. An exploit could allow the attacker to cause the device to reload, resulting in a denial of service (DoS) condition.

Affected (42)

Products: Cisco: Ios Xe
1 product
Ios Xe
Configuration A
42 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 16.9.2h
Version 3.10.0ce
Version 3.10.0e
Version 3.10.1ae
Version 3.10.1e
Version 3.10.1se
Version 3.10.2e
Version 3.6.0ae
Version 3.6.0be
Version 3.6.0e
Version 3.6.10e
Version 3.6.1e
Version 3.6.2ae
Version 3.6.2e
Version 3.6.3e
Version 3.6.4e
Version 3.6.5ae
Version 3.6.5be
Version 3.6.5e
Version 3.6.6e
Version 3.6.7ae
Version 3.6.7be
Version 3.6.7e
Version 3.6.8e
Version 3.6.9e
Version 3.7.0e
Version 3.7.1e
Version 3.7.2e
Version 3.7.3e
Version 3.8.0e
Version 3.8.1e
Version 3.8.2e
Version 3.8.3e
Version 3.8.4e
Version 3.8.5ae
Version 3.8.5e
Version 3.8.6e
Version 3.8.7e
Version 3.9.0e
Version 3.9.1e
Version 3.9.2be
Version 3.9.2e

References (4)

Source: psirt@cisco.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.