← Back

CVE-2024-20321

nvd nist
Published: Feb 29, 2024Modified: Nov 21, 2024

JSON object

Loading...
8.6
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 4.0
Source: NVD

Description

A vulnerability in the External Border Gateway Protocol (eBGP) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability exists because eBGP traffic is mapped to a shared hardware rate-limiter queue. An attacker could exploit this vulnerability by sending large amounts of network traffic with certain characteristics through an affected device. A successful exploit could allow the attacker to cause eBGP neighbor sessions to be dropped, leading to a DoS condition in the network.

Affected (48)

Products: Cisco: Nx Os
1 product
Nx Os
Configuration A
48 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 10.1(1)
Version 10.1(2)
Version 10.1(2t)
Version 10.2(1)
Version 10.2(1q)
Version 10.2(2)
Version 10.2(3)
Version 10.2(3t)
Version 10.2(3v)
Version 10.2(4)
Version 10.2(5)
Version 10.2(6)
Version 10.3(1)
Version 10.3(2)
Version 10.3(3)
Version 10.3(4a)
Version 10.3(99w)
Version 10.3(99x)
Version 10.4(1)
Version 7.0(3)f1(1)
Version 7.0(3)f2(1)
Version 7.0(3)f2(2)
Version 7.0(3)f3(1)
Version 7.0(3)f3(2)
Version 7.0(3)f3(3)
Version 7.0(3)f3(3a)
Version 7.0(3)f3(3c)
Version 7.0(3)f3(4)
Version 7.0(3)f3(5)
Version 9.2(1)
Version 9.2(2)
Version 9.2(2t)
Version 9.2(2v)
Version 9.2(3)
Version 9.2(4)
Version 9.3(10)
Version 9.3(11)
Version 9.3(12)
Version 9.3(1)
Version 9.3(2)
Version 9.3(3)
Version 9.3(4)
Version 9.3(5)
Version 9.3(6)
Version 9.3(7)
Version 9.3(7a)
Version 9.3(8)
Version 9.3(9)

Timeline

No history available yet.