The encryption functionality in Cisco NX-OS on the Nexus 1000V does not properly handle Virtual Supervisor Module (VSM) to Virtual Ethernet Module (VEM) communication, which allows remote attackers to intercept or modify network traffic by leveraging certain Layer 2 or Layer 3 access, aka Bug ID CSCud14691.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1208 | Vendor Advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1208 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:49
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1208 - Vendor Advisory |
Information
Published : 2013-05-29 19:55
Updated : 2024-11-21 01:49
NVD link : CVE-2013-1208
Mitre link : CVE-2013-1208
CVE.ORG link : CVE-2013-1208
JSON object : View
Products Affected
cisco
- nx-os
- nexus_1000v
CWE
CWE-310
Cryptographic Issues