A vulnerability in the errdisable per VLAN feature of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause the device to crash, leading to a denial of service (DoS) condition. The vulnerability is due to a race condition that occurs when the VLAN and port enter an errdisabled state, resulting in an incorrect state in the software. An attacker could exploit this vulnerability by sending frames that trigger the errdisable condition. A successful exploit could allow the attacker to cause the affected device to crash, leading to a DoS condition.
History

Tue, 26 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2018-10-05T14:00:00Z

Updated: 2024-11-26T14:37:02.816Z

Reserved: 2017-11-27T00:00:00

Link: CVE-2018-0480

cve-icon Vulnrichment

Updated: 2024-08-05T03:28:10.476Z

cve-icon NVD

Status : Modified

Published: 2018-10-05T14:29:05.560

Modified: 2024-11-21T03:38:19.090

Link: CVE-2018-0480

cve-icon Redhat

No data.