CVE-2013-0570

The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ibm:network_operating_system:-:*:*:*:*:*:*:*
OR cpe:2.3:h:ibm:flex_system_fabric_cn4093:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flex_system_fabric_en4093:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:flex_system_si4093_:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8124:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8124-e:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8124-er:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8264:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8264-t:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8264cs:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:rackswitch_g8316:-:*:*:*:*:*:*:*
cpe:2.3:h:ibm:virtual_fabric:-:*:*:*:*:*:*:*

History

21 Nov 2024, 01:47

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/83166 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/83166 - VDB Entry, Vendor Advisory
References () https://www-304.ibm.com/support/docview.wss?uid=isg3T1019715 - Vendor Advisory () https://www-304.ibm.com/support/docview.wss?uid=isg3T1019715 - Vendor Advisory

Information

Published : 2018-07-13 21:29

Updated : 2024-11-21 01:47


NVD link : CVE-2013-0570

Mitre link : CVE-2013-0570

CVE.ORG link : CVE-2013-0570


JSON object : View

Products Affected

ibm

  • rackswitch_g8124-er
  • flex_system_si4093_
  • flex_system_fabric_en4093
  • rackswitch_g8316
  • virtual_fabric
  • rackswitch_g8264-t
  • network_operating_system
  • rackswitch_g8124-e
  • rackswitch_g8264
  • rackswitch_g8124
  • rackswitch_g8264cs
  • flex_system_fabric_cn4093
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor