Buffer overflow in Cisco FXOS - CVE-2018-0298
Published: June 20, 2018 / Updated: June 25, 2018
Vulnerability details
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists in the web UI due to buffer overflow when handling malicious input. A remote attacker can send a malicious HTTP or HTTPS packet directed to the physical management interface and cause the process to crash and possibly reload the device.
Affected software
UCS 6300 Series Fabric Interconnects
UCS 6200 Series Fabric Interconnects
UCS 6100 Series Fabric Interconnects