2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2023-20089" ,
2025-01-26 03:03:52 +00:00
"sourceIdentifier" : "psirt@cisco.com" ,
2023-04-24 12:24:31 +02:00
"published" : "2023-02-23T20:15:13.557" ,
2024-12-08 03:06:42 +00:00
"lastModified" : "2024-11-21T07:40:31.967" ,
2023-11-07 21:03:21 +00:00
"vulnStatus" : "Modified" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "A vulnerability in the Link Layer Discovery Protocol (LLDP) feature for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) Mode could allow an unauthenticated, adjacent attacker to cause a memory leak, which could result in an unexpected reload of the device. This vulnerability is due to incorrect error checking when parsing ingress LLDP packets. An attacker could exploit this vulnerability by sending a steady stream of crafted LLDP packets to an affected device. A successful exploit could allow the attacker to cause a memory leak, which could result in a denial of service (DoS) condition when the device unexpectedly reloads. Note: This vulnerability cannot be exploited by transit traffic through the device. The crafted LLDP packet must be targeted to a directly connected interface, and the attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent). In addition, the attack surface for this vulnerability can be reduced by disabling LLDP on interfaces where it is not required."
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
2025-01-26 03:03:52 +00:00
"source" : "psirt@cisco.com" ,
2024-12-08 03:06:42 +00:00
"type" : "Secondary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
"version" : "3.1" ,
2024-12-08 03:06:42 +00:00
"vectorString" : "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H" ,
"baseScore" : 7.4 ,
"baseSeverity" : "HIGH" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "ADJACENT_NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
2024-12-08 03:06:42 +00:00
"scope" : "CHANGED" ,
2023-04-24 12:24:31 +02:00
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
2024-12-08 03:06:42 +00:00
"impactScore" : 4.0
2023-11-07 21:03:21 +00:00
} ,
2023-04-24 12:24:31 +02:00
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
2023-11-07 21:03:21 +00:00
"version" : "3.1" ,
2024-12-08 03:06:42 +00:00
"vectorString" : "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" ,
"baseScore" : 6.5 ,
"baseSeverity" : "MEDIUM" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "ADJACENT_NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
2024-12-08 03:06:42 +00:00
"scope" : "UNCHANGED" ,
2023-04-24 12:24:31 +02:00
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "HIGH"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
2024-12-08 03:06:42 +00:00
"impactScore" : 3.6
2023-04-24 12:24:31 +02:00
}
]
} ,
"weaknesses" : [
{
2025-01-26 03:03:52 +00:00
"source" : "psirt@cisco.com" ,
2024-12-08 03:06:42 +00:00
"type" : "Secondary" ,
2023-04-24 12:24:31 +02:00
"description" : [
{
"lang" : "en" ,
2024-12-08 03:06:42 +00:00
"value" : "CWE-789"
2023-04-24 12:24:31 +02:00
}
]
} ,
{
2024-12-08 03:06:42 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2023-04-24 12:24:31 +02:00
"description" : [
{
"lang" : "en" ,
2024-12-08 03:06:42 +00:00
"value" : "CWE-401"
2023-04-24 12:24:31 +02:00
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(1g\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D4C90C63-E006-4101-A737-429B28A5ABD5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(2e\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0235897B-D881-4C22-AEC5-6B0D8552B47B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(2f\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "77B4432C-D3C1-45DA-8E2B-1282A98D4D66"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(2g\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FE2846A6-62B3-4035-968C-AA73FFA1EA67"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(2h\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C6DC1C38-8134-4548-9685-03664699B273"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(3e\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C46E10DB-6CA8-460F-9C6D-48684BDCCEA9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(3f\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D027C394-ED7D-4302-92B1-F9A2F60C8568"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(3g\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3914D468-662E-4F82-910F-67800189462E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(4d\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6502FEA6-A959-48F3-84E7-6E2180D23956"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(4e\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1336D0EA-F391-411D-B140-040E805DF3DB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(4f\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "60BC734F-D9DB-42B9-82C4-4A23C2A3C14D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(5c\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F9F5D422-54B8-47F2-96E6-A820E27658DE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(5d\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F2BBBEDF-6869-4C99-A1D9-1AF53EFA82E0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:15.2\\(5e\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CBB9500B-84F9-4B35-95C6-26F57BE8145C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:16.0\\(1g\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "6B68CD3E-700F-43D2-960C-C53A6EE241B1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:cisco:nx-os:16.0\\(1j\\):*:*:*:*:*:*:*" ,
"matchCriteriaId" : "743AED05-E2D7-4322-8814-C803F0BD6265"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9000v:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "0CD9C1F1-8582-4F67-A77D-97CBFECB88B8"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_92160yc-x:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4283E433-7F8C-4410-B565-471415445811"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_92300yc:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F80AB6FB-32FD-43D7-A9F1-80FA47696210"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_92304qc:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D5B2E4C1-2627-4B9D-8E92-4B483F647651"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_92348gc-x:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "557ED31C-C26A-4FAE-8B14-D06B49F7F08B"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9236c:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "11411BFD-3F4D-4309-AB35-A3629A360FB0"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9272q:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E663DE91-C86D-48DC-B771-FA72A8DF7A7C"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93108tc-ex:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A90184B3-C82F-4CE5-B2AD-97D5E4690871"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93108tc-ex-24:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "40E40F42-632A-47DF-BE33-DC25B826310B"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93108tc-fx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4AB89849-6DA4-4C9D-BC3F-EE0E41FD1901"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93108tc-fx-24:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C47F6BF9-2ADB-41A4-8D7D-8BB00141BB23"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93108tc-fx3p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BBEF7F26-BB47-44BD-872E-130820557C23"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93120tx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "07DE6F63-2C7D-415B-8C34-01EC05C062F3"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93128tx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F423E45D-A6DD-4305-9C6A-EAB26293E53A"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9316d-gx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "102F91CD-DFB6-43D4-AE5B-DA157A696230"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180lc-ex:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E952A96A-0F48-4357-B7DD-1127D8827650"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-ex:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F70D81F1-8B12-4474-9060-B4934D8A3873"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-ex-24:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5394DE31-3863-4CA9-B7B1-E5227183100D"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-fx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7349D69B-D8FA-4462-AA28-69DD18A652D9"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-fx-24:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "FE4BB834-2C00-4384-A78E-AF3BCDDC58AF"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-fx3:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B0D30D52-837F-4FDA-B8E5-A9066E9C6D2F"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93180yc-fx3s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7CE49B45-F2E9-491D-9C29-1B46E9CE14E2"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93216tc-fx2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B1CC5F78-E88B-4B82-9E3E-C73D3A49DE26"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93240yc-fx2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "91231DC6-2773-4238-8C14-A346F213B5E5"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9332c:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2DF88547-BAF4-47B0-9F60-80A30297FCEB"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9332d-gx2b:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "02C3CE6D-BD54-48B1-A188-8E53DA001424"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9332pq:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "113772B6-E9D2-4094-9468-3F4E1A87D07D"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93360yc-fx2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C45A38D6-BED6-4FEF-AD87-A1E813695DE0"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9336c-fx2:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F1FC2B1F-232E-4754-8076-CC82F3648730"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9336c-fx2-e:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7CDD27C9-5EAF-4956-8AB7-740C84C9D4FC"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9336pq_aci_spine:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "785FD17C-F32E-4042-9DDE-A89B3AAE0334"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9348d-gx2a:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "73DC1E93-561E-490C-AE0E-B02BAB9A7C8E"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9348gc-fxp:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "17C7E3DB-8E1A-47AD-B1C5-61747DC0CFB9"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_93600cd-gx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2CF467E2-4567-426E-8F48-39669E0F514C"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9364c:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "63842B25-8C32-4988-BBBD-61E9CB09B4F3"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9364c-gx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "68EA1FEF-B6B6-49FE-A0A4-5387F76303F8"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9364d-gx2a:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "40D6DB7F-C025-4971-9615-73393ED61078"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9372px:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4364ADB9-8162-451D-806A-B98924E6B2CF"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9372px-e:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B53BCB42-ED61-4FCF-8068-CB467631C63C"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9372tx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "49E0371B-FDE2-473C-AA59-47E1269D050F"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9372tx-e:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "489D11EC-5A18-4F32-BC7C-AC1FCEC27222"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9396px:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1BC5293E-F2B4-46DC-85DA-167EA323FCFD"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9396tx:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EA022E77-6557-4A33-9A3A-D028E2DB669A"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9408:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D8D5D5E2-B40B-475D-9EF3-8441016E37E9"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9508:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DDC2F709-AFBE-48EA-A3A2-DA1134534FB6"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:cisco:nexus_9808:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3284D16F-3275-4F8D-8AE4-D413DE19C4FA"
}
]
}
]
}
] ,
"references" : [
{
"url" : "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-lldp-dos-ySCNZOpX" ,
2025-01-26 03:03:52 +00:00
"source" : "psirt@cisco.com" ,
2023-04-24 12:24:31 +02:00
"tags" : [
"Mitigation" ,
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aci-lldp-dos-ySCNZOpX" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Mitigation" ,
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}