

Multiple Google Chrome Vulnerabilities
August 29, 2024
APT-C-60 Group Leverages Vulnerability in WPS Office to Install SpyGlace Backdoor – Active IOCs
August 29, 2024
Multiple Google Chrome Vulnerabilities
August 29, 2024
APT-C-60 Group Leverages Vulnerability in WPS Office to Install SpyGlace Backdoor – Active IOCs
August 29, 2024Severity
High
Analysis Summary
CVE-2024-20446
Cisco NX-OS Software is vulnerable to a denial of service, caused by improper handling of specific fields in a DHCPv6 RELAY-REPLY message. By sending a specially crafted DHCPv6 packet to any IPv6 address that is configured on an affected device, an attacker could exploit this vulnerability to cause the dhcp_snoop process to crash and restart multiple times.
Impact
- Denial of Service
Indicators of Compromise
CVE
- CVE-2024-20446
Affected Vendors
Affected Products
- Cisco NX-OS Software - 10.2
Remediation
Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.