Cisco patches critical Nexus switch security bugs
Cisco has fixed five critical security flaws in its NX-OS data center switch software that could let attackers execute code with root privileges or crash affected Nexus 3000 and 9000 units. The bugs stem from input validation failures in features like NX-API, NGOAM, and MPLS OAM, which must be enabled to be at risk. Cisco recommends updating affected software and disabling unneeded features.
- Flaws impact Nexus 3000 and 9000 switches in NX-OS mode
- Attackers could gain root access or cause device reboots
- NX-API, NGOAM, or MPLS OAM features must be active to exploit
- All five issues stem from insufficient input validation
- Cisco reports no evidence of these vulnerabilities being exploited
Sources covering this
In this story
More in Cybersecurity
US and allies disrupt Chinese hacking tools targeting infrastructure
US authorities and international partners have seized domains and tools used by China's Integrity Technology Group to support…
AI-powered attacks target South Korean banks
A cyberattack campaign targeting South Korean financial institutions used AI-based tools to steal personal data, CrowdStrike reported.
Google promotes passkeys as a password alternative
Google is highlighting passkeys as a faster and safer alternative to traditional passwords for its accounts.
Malware found pre-installed on low-cost Android phones
Researchers have discovered malware embedded in the firmware of inexpensive Android smartphones, allowing attackers to remotely install…