Resource exhaustion in Cisco Systems, Inc products - CVE-2020-3338
Published: August 27, 2020
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources when processing inbound PIM6 packets. A remote attacker can send multiple specially crafted PIM6 packets, trigger resource exhaustion and perform a denial of service (DoS) attack.
Affected software
Cisco Nexus 9000 Series Switches NX-OS Mode
Cisco Nexus 7000 Series Switches
Cisco Nexus 3000 Series Switches
How to mitigate CVE-2020-3338
Cisco Nexus 9000 Series Switches NX-OS Mode - update to 9.3.3
Cisco Nexus 7000 Series Switches - addressed in versions 7.3.6 D1.1, 8.2.6, 8.4.1, 8.4.2
Cisco Nexus 3000 Series Switches - update to 9.3.3