MEDIUM · 5.3

CVE-2013-0570

The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) f...

Vulnerability Description

The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166.

CVSS Score

5.3

MEDIUM

CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
ADJACENT_NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
IbmNetwork Operating System-
IbmFlex System Fabric Cn4093-
IbmFlex System Fabric En4093-
IbmFlex System Si4093 -
IbmRackswitch G8124-
IbmRackswitch G8124-E-
IbmRackswitch G8124-Er-
IbmRackswitch G8264-
IbmRackswitch G8264-T-
IbmRackswitch G8264Cs-
IbmRackswitch G8316-
IbmVirtual Fabric-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-0570?

CVE-2013-0570 is a vulnerability with a CVSS score of 5.3 (MEDIUM). The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) f...

How severe is CVE-2013-0570?

CVE-2013-0570 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-0570?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Network Operating System, Ibm Flex System Fabric Cn4093, Ibm Flex System Fabric En4093, Ibm Flex System Si4093 , Ibm Rackswitch G8124.