CVE-2022-20823

HIGHCVSS 8.6/10EPSS 1.02%

Last modified

CVE-2022-20823 is a high-severity vulnerability rated 8.6/10 on the CVSS scale. A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incomplete input validation of specific OSPFv3 packets. EPSS estimates a 1.02% chance of exploitation in the next 30 days.

Description

A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incomplete input validation of specific OSPFv3 packets. An attacker could exploit this vulnerability by sending a malicious OSPFv3 link-state advertisement (LSA) to an affected device. A successful exploit could allow the attacker to cause the OSPFv3 process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition. Note: The OSPFv3 feature is disabled by default. To exploit this vulnerability, an attacker must be able to establish a full OSPFv3 neighbor state with an affected device. For more information about exploitation conditions, see the Details section of this advisory.

Metrics

CVSS 3.1
8.6/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

EPSS Probability
1.02%

59.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
CiscoNexus 3016 FirmwareAll versions
CiscoNexus 3016q FirmwareAll versions
CiscoNexus 3048 FirmwareAll versions
CiscoNexus 3064 FirmwareAll versions
CiscoNexus 3064-32t FirmwareAll versions
CiscoNexus 3064-T FirmwareAll versions
CiscoNexus 3064-X FirmwareAll versions
CiscoNexus 3064t FirmwareAll versions
CiscoNexus 3064x FirmwareAll versions
CiscoNexus 3100 FirmwareAll versions
CiscoNexus 3100-V FirmwareAll versions
CiscoNexus 3100-Z FirmwareAll versions
CiscoNexus 3100v FirmwareAll versions
CiscoNexus 31108pc-V FirmwareAll versions
CiscoNexus 31108pv-V FirmwareAll versions
CiscoNexus 31108tc-V FirmwareAll versions
CiscoNexus 31128pq FirmwareAll versions
CiscoNexus 3132c-Z FirmwareAll versions
CiscoNexus 3132q FirmwareAll versions
CiscoNexus 3132q-V FirmwareAll versions
CiscoNexus 3132q-X FirmwareAll versions
CiscoNexus 3132q-X\/3132q-Xl FirmwareAll versions
CiscoNexus 3132q-Xl FirmwareAll versions
CiscoNexus 3164q FirmwareAll versions
CiscoNexus 3172 FirmwareAll versions
CiscoNexus 3172pq FirmwareAll versions
CiscoNexus 3172pq-Xl FirmwareAll versions
CiscoNexus 3172pq\/Pq-Xl FirmwareAll versions
CiscoNexus 3172tq FirmwareAll versions
CiscoNexus 3172tq-32t FirmwareAll versions
CiscoNexus 3172tq-Xl FirmwareAll versions
CiscoNexus 3200 FirmwareAll versions
CiscoNexus 3232c FirmwareAll versions
CiscoNexus 3232c FirmwareAll versions
CiscoNexus 3264c-E FirmwareAll versions
CiscoNexus 3264q FirmwareAll versions
CiscoNexus 3400 FirmwareAll versions
CiscoNexus 3408-S FirmwareAll versions
CiscoNexus 34180yc FirmwareAll versions
CiscoNexus 34200yc-Sm FirmwareAll versions
CiscoNexus 3432d-S FirmwareAll versions
CiscoNexus 3464c FirmwareAll versions
CiscoNexus 3500 FirmwareAll versions
CiscoNexus 3500 Platform FirmwareAll versions
CiscoNexus 3524 FirmwareAll versions
CiscoNexus 3524-X FirmwareAll versions
CiscoNexus 3524-X\/Xl FirmwareAll versions
CiscoNexus 3524-Xl FirmwareAll versions
CiscoNexus 3548 FirmwareAll versions
CiscoNexus 3548-X FirmwareAll versions

Showing 50 of 147 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2022-20823?
A vulnerability in the OSPF version 3 (OSPFv3) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to incomplete input validation of specific OSPFv3 packets. An attacker could exploit this vulnerability by sending a malicious OSPFv3 link-state advertisement (LSA) to an affected device. A successful exploit could allow the attacker to cause the OSPFv3 process to crash and restart multiple times, causing the affected device to reload and resulting in a DoS condition. Note: The OSPFv3 feature is disabled by default. To exploit this vulnerability, an attacker must be able to establish a full OSPFv3 neighbor state with an affected device. For more information about exploitation conditions, see the Details section of this advisory.
How severe is CVE-2022-20823?
CVE-2022-20823 has a CVSS score of 8.6/10 (HIGH severity). The EPSS model estimates a 1.02% probability of exploitation in the next 30 days.
How do I fix CVE-2022-20823?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2022-20823?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST