Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · net nu 109 bronnen 3 kritiek 22 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2018-0167

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-119

Beschrijving NL

Er is een kwetsbaarheid voor bufferoverloop in het LLDP-subsysteem (Link Layer Discovery Protocol) van Cisco IOS Software, Cisco IOS XE Software en Cisco IOS XR Software waardoor een niet-geverifieerde, aangrenzende aanvaller een Denial of Service (DoS) -toestand kan veroorzaken of willekeurige code kan uitvoeren.

Vereiste actie: voer updates uit volgens de instructies van de leverancier.

Origineel (Engels) tonen

There is a buffer overflow vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco IOS Software, Cisco IOS XE Software, and Cisco IOS XR Software which could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition or execute arbitrary code.

Required action: Apply updates per vendor instructions.

Vendors

Cisco

Affected products

Ios, Xr, And Xe Software

References