MEDIUM · 6.5

CVE-2017-6655

A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition...

Vulnerability Description

A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition when an FCoE-related process unexpectedly reloads. This vulnerability affects Cisco NX-OS Software on the following Cisco devices when they are configured for FCoE: Multilayer Director Switches, Nexus 7000 Series Switches, Nexus 7700 Series Switches. More Information: CSCvc91729. Known Affected Releases: 8.3(0)CV(0.833). Known Fixed Releases: 8.3(0)ISH(0.62) 8.3(0)CV(0.944) 8.1(1) 8.1(0.8)S0 7.3(2)D1(0.47).

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
CiscoMds 9000 Nx-Os7.3\(1\)d1\(1\)
CiscoNx-Os For Nexus 5500 Platform Switches7.3\(1\)n1\(1\)
CiscoNx-Os For Nexus 5600 Platform Switches7.3\(1\)n1\(1\)
CiscoNx-Os For Nexus 7700 Series Switches8.0\(1\)\(ed\)
CiscoNx-Os8.0\(1\)s2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2017-6655?

CVE-2017-6655 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A vulnerability in the Fibre Channel over Ethernet (FCoE) protocol implementation in Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition...

How severe is CVE-2017-6655?

CVE-2017-6655 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2017-6655?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Mds 9000 Nx-Os, Cisco Nx-Os For Nexus 5500 Platform Switches, Cisco Nx-Os For Nexus 5600 Platform Switches, Cisco Nx-Os For Nexus 7700 Series Switches, Cisco Nx-Os.