CVE-2019-1962 is a denial-of-service vulnerability affecting Cisco NX-OS Software, specifically within the Cisco Fabric Services component when using the CFSoIP distribution method. An unauthenticated, remote attacker can exploit this by sending a malicious TCP packet, leading to process crashes and device reloads. This vulnerability has a CVSS score of 7.5 (High) due to its network attack vector and high impact on availability, though it requires the CFSoIP feature to be explicitly enabled. There is no public exploit code available, nor is it listed in CISA's KEV catalog, indicating no active exploitation. Community discussion and media coverage are minimal, suggesting limited public awareness or interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 5.2, < 6.2\(29\)CPE matchmatch criteria | cpe:2.3:o:cisco:nx-os:*:*:*:*:*:*:*:* | ||
>= 7.3, < 8.1CPE matchmatch criteria | cpe:2.3:o:cisco:nx-os:*:*:*:*:*:*:*:* | ||
>= 7.0\(3\)f, < 9.2CPE matchmatch criteria | cpe:2.3:o:cisco:nx-os:*:*:*:*:*:*:*:* | ||
< 7.1\(5\)n1\(1b\)CPE matchmatch criteria | cpe:2.3:o:cisco:nx-os:*:*:*:*:*:*:*:* | ||
>= 7.3, < 7.3\(5\)n1\(1\)CPE matchmatch criteria | cpe:2.3:o:cisco:nx-os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.