GPU VulnDB

Database/Firmware, BMC & network fabric

Cisco NX-OS PTP feature (Nexus 5500/5600/6000): FABRIC DOS: an unauthenticated remote attacker takes down a Nexus

CVE-2018-0378Firmware, BMC & network fabriccurated

Impact

FABRIC DOS: an unauthenticated remote attacker takes down a Nexus switch through the PTP subsystem. PTP is one of the few unauthenticated protocols that switches process in the control plane by design, so it is a reliable path to the CPU on every device that has it enabled. The Cisco IOS equivalent is CVE-2018-0473.

Who can reach it

Unauthenticated, remote — PTP packets reaching the switch's PTP-enabled interfaces.

What to do

NX-OS upgrade plus reload. Immediate config mitigation: disable PTP on interfaces that face tenant workloads and keep it only on the links that actually need it — live change, no reload.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.