CVE-2011-4023
UnknownEPSS 1.33%
Last modified
CVE-2011-4023 is a vulnerability of currently unknown severity. Memory leak in libcmd in Cisco NX-OS 5.0 on Nexus switches allows remote authenticated users to cause a denial of service (memory consumption) via SNMP requests, aka Bug ID CSCtr65682.. EPSS estimates a 1.33% chance of exploitation in the next 30 days.
Description
Memory leak in libcmd in Cisco NX-OS 5.0 on Nexus switches allows remote authenticated users to cause a denial of service (memory consumption) via SNMP requests, aka Bug ID CSCtr65682.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Nx-Os | 5.0 |
| Cisco | Nx-Os | 5.0\(2\) |
| Cisco | Nx-Os | 5.0\(2\)n1\(1\) |
| Cisco | Nx-Os | 5.0\(2\)n2\(1\) |
| Cisco | Nx-Os | 5.0\(2\)n2\(1a\) |
| Cisco | Nx-Os | 5.0\(2a\) |
| Cisco | Nx-Os | 5.0\(3\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1a\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1b\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1c\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(1\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2a\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2b\) |
| Cisco | Nx-Os | 5.0\(5\) |
| Cisco | Nexus 2148t Fex Switch | All versions |
| Cisco | Nexus 2224tp Fex Switch | All versions |
| Cisco | Nexus 2232pp Fex Switch | All versions |
| Cisco | Nexus 2232tm Fex Switch | All versions |
| Cisco | Nexus 2248tp E Fex Switch | All versions |
| Cisco | Nexus 2248tp Fex Switch | All versions |
| Cisco | Nexus 5010p Switch | All versions |
| Cisco | Nexus 5020p Switch | All versions |
| Cisco | Nexus 5548p | All versions |
| Cisco | Nexus 5548up | All versions |
| Cisco | Nexus 5596up | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-4023?
Memory leak in libcmd in Cisco NX-OS 5.0 on Nexus switches allows remote authenticated users to cause a denial of service (memory consumption) via SNMP requests, aka Bug ID CSCtr65682.
How severe is CVE-2011-4023?
Severity scoring for CVE-2011-4023 is pending analysis. The EPSS model estimates a 1.33% probability of exploitation in the next 30 days.
How do I fix CVE-2011-4023?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
Are you affected by CVE-2011-4023?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
