CVE-2016-1453 - CVE House
Back to Database
Status published Critical CVE-2016-1453

Buffer overflow in the Overlay Transport Virtualization (OTV) GRE feature...

Vulnerability Description

Buffer overflow in the Overlay Transport Virtualization (OTV) GRE feature in Cisco NX-OS 5.0 through 7.3 on Nexus 7000 and 7700 devices allows remote attackers to execute arbitrary code via long parameters in a packet header, aka Bug ID CSCuy95701.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-1453

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

nx-os
Vulnerable Versions:
4.1.\(2\), 4.1.\(3\), 4.1.\(4\), 4.1.\(5\), 4.2\(3\), 4.2\(4\), 4.2\(6\), 4.2\(8\), 4.2.\(2a\), 5.0\(2a\), 5.0\(3\), 5.0\(5\), 5.1\(1\), 5.1\(1a\), 5.1\(3\), 5.1\(4\), 5.1\(5\), 5.1\(6\), 5.2\(1\), 5.2\(3a\), 5.2\(4\), 5.2\(5\), 5.2\(7\), 5.2\(9\), 6.0\(1\), 6.0\(2\), 6.0\(3\), 6.0\(4\), 6.1\(1\), 6.1\(2\), 6.1\(3\), 6.1\(4\), 6.1\(4a\), 6.1\(5\), 6.2\(2\), 6.2\(2a\), 6.2\(6\), 6.2\(6b\), 6.2\(8\), 6.2\(8a\), 6.2\(8b\), 6.2\(10\), 6.2\(12\), 6.2\(14\)s1, 7.2\(0\)n1\(0.1\), base

Timeline

Official Publish: October 6th, 2016
Last Modified: August 5th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.