Vulnerability Database

289,598

Total vulnerabilities in the database

CVE-2024-20321

A vulnerability in the External Border Gateway Protocol (eBGP) implementation of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

This vulnerability exists because eBGP traffic is mapped to a shared hardware rate-limiter queue. An attacker could exploit this vulnerability by sending large amounts of network traffic with certain characteristics through an affected device. A successful exploit could allow the attacker to cause eBGP neighbor sessions to be dropped, leading to a DoS condition in the network.

  • Published: Feb 29, 2024
  • Updated: Mar 5, 2024
  • CVE: CVE-2024-20321
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 8.6
  • AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

CWEs:

Software From Fixed in
cisco / nx-os 9.2(2) 9.2(2).x
cisco / nx-os 9.2(1) 9.2(1).x
cisco / nx-os 7.0(3)f3(3) 7.0(3)f3(3).x
cisco / nx-os 9.3(1) 9.3(1).x
cisco / nx-os 9.2(3) 9.2(3).x
cisco / nx-os 7.0(3)f3(1) 7.0(3)f3(1).x
cisco / nx-os 7.0(3)f3(2) 7.0(3)f3(2).x
cisco / nx-os 7.0(3)f3(4) 7.0(3)f3(4).x
cisco / nx-os 7.0(3)f3(3a) 7.0(3)f3(3a).x
cisco / nx-os 7.0(3)f3(3c) 7.0(3)f3(3c).x
cisco / nx-os 7.0(3)f3(5) 7.0(3)f3(5).x
cisco / nx-os 9.3(5) 9.3(5).x
cisco / nx-os 9.3(6) 9.3(6).x
cisco / nx-os 9.3(7) 9.3(7).x
cisco / nx-os 9.3(4) 9.3(4).x
cisco / nx-os 9.3(3) 9.3(3).x
cisco / nx-os 7.0(3)f2(1) 7.0(3)f2(1).x
cisco / nx-os 7.0(3)f1(1) 7.0(3)f1(1).x
cisco / nx-os 7.0(3)f2(2) 7.0(3)f2(2).x
cisco / nx-os 9.3(2) 9.3(2).x
cisco / nx-os 9.2(2t) 9.2(2t).x
cisco / nx-os 9.2(2v) 9.2(2v).x
cisco / nx-os 9.2(4) 9.2(4).x
cisco / nx-os 9.3(7a) 9.3(7a).x
cisco / nx-os 9.3(8) 9.3(8).x
cisco / nx-os 9.3(9) 9.3(9).x
cisco / nx-os 9.3(10) 9.3(10).x
cisco / nx-os 9.3(11) 9.3(11).x
cisco / nx-os 10.1(1) 10.1(1).x
cisco / nx-os 10.1(2) 10.1(2).x
cisco / nx-os 10.1(2t) 10.1(2t).x
cisco / nx-os 10.2(1) 10.2(1).x
cisco / nx-os 10.2(1q) 10.2(1q).x
cisco / nx-os 10.2(2) 10.2(2).x
cisco / nx-os 10.2(3) 10.2(3).x
cisco / nx-os 10.2(3t) 10.2(3t).x
cisco / nx-os 10.2(4) 10.2(4).x
cisco / nx-os 10.2(5) 10.2(5).x
cisco / nx-os 10.3(1) 10.3(1).x
cisco / nx-os 10.3(2) 10.3(2).x
cisco / nx-os 9.3(12) 9.3(12).x
cisco / nx-os 10.2(3v) 10.2(3v).x
cisco / nx-os 10.2(6) 10.2(6).x
cisco / nx-os 10.3(3) 10.3(3).x
cisco / nx-os 10.3(99w) 10.3(99w).x
cisco / nx-os 10.3(99x) 10.3(99x).x
cisco / nx-os 10.4(1) 10.4(1).x
cisco / nx-os 10.3(4a) 10.3(4a).x