Vulnerability Description
The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Network Operating System | - |
| Ibm | Flex System Fabric Cn4093 | - |
| Ibm | Flex System Fabric En4093 | - |
| Ibm | Flex System Si4093 | - |
| Ibm | Rackswitch G8124 | - |
| Ibm | Rackswitch G8124-E | - |
| Ibm | Rackswitch G8124-Er | - |
| Ibm | Rackswitch G8264 | - |
| Ibm | Rackswitch G8264-T | - |
| Ibm | Rackswitch G8264Cs | - |
| Ibm | Rackswitch G8316 | - |
| Ibm | Virtual Fabric | - |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/83166VDB EntryVendor Advisory
- https://www-304.ibm.com/support/docview.wss?uid=isg3T1019715Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/83166VDB EntryVendor Advisory
- https://www-304.ibm.com/support/docview.wss?uid=isg3T1019715Vendor Advisory
FAQ
What is CVE-2013-0570?
CVE-2013-0570 is a vulnerability with a CVSS score of 5.3 (MEDIUM). The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) f...
How severe is CVE-2013-0570?
CVE-2013-0570 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2013-0570?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Network Operating System, Ibm Flex System Fabric Cn4093, Ibm Flex System Fabric En4093, Ibm Flex System Si4093 , Ibm Rackswitch G8124.