CVE-2014-3261
Last modified
CVE-2014-3261 is a vulnerability of currently unknown severity. Buffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX-OS 5.0 before 5.0(3)U2(2) on Nexus 3000 devices, NX-OS 4.1 before 4.1(2)E1(1l) on Nexus 4000 devices, NX-OS 5.x before 5.1(3)N1(1) on Nexus 5000 devices, NX-OS 5.2 before 5.2(3a) on Nexus 7000 devices, and CG-OS CG4 before CG4(2) on Connected 1000 Connected Grid Routers allows remote SMTP servers to execute arbitrary code via a crafted reply, aka Bug IDs CSCtk00695, CSCts56633, CSCts56632, CSCts56628, CSCug14405, and CSCuf61322.. EPSS estimates a 1.79% chance of exploitation in the next 30 days.
Description
Buffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX-OS 5.0 before 5.0(3)U2(2) on Nexus 3000 devices, NX-OS 4.1 before 4.1(2)E1(1l) on Nexus 4000 devices, NX-OS 5.x before 5.1(3)N1(1) on Nexus 5000 devices, NX-OS 5.2 before 5.2(3a) on Nexus 7000 devices, and CG-OS CG4 before CG4(2) on Connected 1000 Connected Grid Routers allows remote SMTP servers to execute arbitrary code via a crafted reply, aka Bug IDs CSCtk00695, CSCts56633, CSCts56632, CSCts56628, CSCug14405, and CSCuf61322.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unified Computing System 6120xp Fabric Interconnect | All versions |
| Cisco | Unified Computing System 6140xp Fabric Interconnect | All versions |
| Cisco | Unified Computing System 6248up Fabric Interconnect | All versions |
| Cisco | Unified Computing System 6296up Fabric Interconnect | All versions |
| Cisco | Unified Computing System Infrastructure And Unified Computing System Software | 1.4\(1j\) |
| Cisco | Cg-Os | cg4 |
| Cisco | Cg-Os | cg4\(1\) |
| Cisco | Cgr 1120 | All versions |
| Cisco | Cgr 1240 | All versions |
| Cisco | Nx-Os | 5.2 |
| Cisco | Nx-Os | 5.2\(1\) |
| Cisco | Nx-Os | 5.2\(3\) |
| Cisco | Nexus 7000 | All versions |
| Cisco | Nexus 7000 10-Slot | All versions |
| Cisco | Nexus 7000 18-Slot | All versions |
| Cisco | Nexus 7000 9-Slot | All versions |
| Cisco | Nx-Os | All versions |
| Cisco | Nx-Os | 5.0 |
| Cisco | Nx-Os | 5.0\(2\) |
| Cisco | Nx-Os | 5.0\(2\)n1\(1\) |
| Cisco | Nx-Os | 5.0\(2\)n2\(1\) |
| Cisco | Nx-Os | 5.0\(2\)n2\(1a\) |
| Cisco | Nx-Os | 5.0\(2a\) |
| Cisco | Nx-Os | 5.0\(3\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1a\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1b\) |
| Cisco | Nx-Os | 5.0\(3\)n1\(1c\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(1\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2a\) |
| Cisco | Nx-Os | 5.0\(3\)n2\(2b\) |
| Cisco | Nx-Os | 5.0\(3\)u1\(1a\) |
| Cisco | Nx-Os | 5.0\(3\)u1\(1b\) |
| Cisco | Nx-Os | 5.0\(3\)u1\(1d\) |
| Cisco | Nx-Os | 5.0\(3\)u1\(2\) |
| Cisco | Nx-Os | 5.0\(3\)u1\(2a\) |
| Cisco | Nx-Os | 5.0\(3\)u2\(1\) |
| Cisco | Nexus 3016q | All versions |
| Cisco | Nexus 3048 | All versions |
| Cisco | Nexus 3064t | All versions |
| Cisco | Nexus 3064x | All versions |
| Cisco | Nexus 3548 | All versions |
| Cisco | Nx-Os | 5.0\(3\)u2\(2\) |
| Cisco | Nx-Os | 5.0\(3\)u2\(2a\) |
| Cisco | Nx-Os | 5.0\(3\)u2\(2b\) |
| Cisco | Nx-Os | 5.0\(3\)u2\(2c\) |
| Cisco | Nx-Os | 5.0\(3\)u2\(2d\) |
| Cisco | Nx-Os | 5.0\(3\)u3\(1\) |
| Cisco | Nx-Os | 5.0\(3\)u3\(2\) |
Showing 50 of 75 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-3261?
How severe is CVE-2014-3261?
How do I fix CVE-2014-3261?
Are you affected by CVE-2014-3261?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
