CVE-2018-0456
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could allow an authenticated, remote attacker to cause the SNMP application of an affected device to restart unexpectedly.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.17%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco NX-OS Software could allow an authenticated, remote attacker to cause the SNMP application of an affected device to restart unexpectedly. The vulnerability is due to improper validation of SNMP protocol data units (PDUs) in SNMP packets. An attacker could exploit this vulnerability by sending a crafted SNMP packet to an affected device. A successful exploit could allow the attacker to cause the SNMP application to restart multiple times, leading to a system-level restart and a denial of service (DoS) condition.
- CVSS 3.0
- 7.7 HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
- EPSS
- 3.17% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- cisco/nx-os
- Source
- psirt@cisco.com
References
- http://www.securityfocus.com/bid/105668Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041921Third Party Advisory, VDB Entry
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181017-nxos-snmpVendor Advisory
- http://www.securityfocus.com/bid/105668Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1041921Third Party Advisory, VDB Entry
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20181017-nxos-snmpVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.