← Vulnerability feed

Vulnerability record · CVE-2013-1178 · published 25 April 2013

CVE-2013-1178: Cisco nx-os memory buffer overflow vulnerability

Cisco · Nx Os

Multiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(4) and 6.x before 6.1(1), Nexus 5000 and 5500 devices 4.x and 5.x before 5.1(3)N1(1), Nexus 4000 devices before 4.1(2)E1(1h), Nexus 3000 devices 5.x before 5.0(3)U3(1), Nexus 1000V devices 4.x before 4.2(1)SV1(5.1), MDS 9000 devices 4.x and 5.x before 5.2(4), Unified Computing System (UCS) 6100 and 6200 devices before 2.0(2m), and Connected Grid Router (CGR) 1000 devices before CG4(1) allow remote attackers to execute arbitrary code via malformed CDP packets, aka Bug IDs CSCtu10630, CSCtu10551, CSCtu10550, CSCtw56581, CSCtu10548, CSCtu10544, and CSCuf61275.

8.3 CVSS 2.0 High EPSS 1.4% · top 29.1% CWE-119 · Memory buffer overflow
8.3CVSS 2.0 base score
1.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
27Affected product versions listed by NVD
2References
16 Jun 2026Last modified by NVD

Description

Multiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(4) and 6.x before 6.1(1), Nexus 5000 and 5500 devices 4.x and 5.x before 5.1(3)N1(1), Nexus 4000 devices before 4.1(2)E1(1h), Nexus 3000 devices 5.x before 5.0(3)U3(1), Nexus 1000V devices 4.x before 4.2(1)SV1(5.1), MDS 9000 devices 4.x and 5.x before 5.2(4), Unified Computing System (UCS) 6100 and 6200 devices before 2.0(2m), and Connected Grid Router (CGR) 1000 devices before CG4(1) allow remote attackers to execute arbitrary code via malformed CDP packets, aka Bug IDs CSCtu10630, CSCtu10551, CSCtu10550, CSCtw56581, CSCtu10548, CSCtu10544, and CSCuf61275.

AV:A/AC:L/Au:N/C:C/I:C/A:C

Affected products

27 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-1178 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2013-1192Cisco adaptive security appliance device manager improper input validation vulnerabilityThe JAR files on Cisco Device Manager for Cisco MDS 9000 devices before 5.2.8, and Cisco Device Manager for Cisco Nexus 5000 devices, allow remote at…EPSS 2.4%9.0CVE-2013-1179Cisco nx-os memory buffer overflow vulnerabilityMultiple buffer overflows in the (1) SNMP and (2) License Manager implementations in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(5) and …EPSS 3.4%9.0CVE-2013-1180Cisco nx-os memory buffer overflow vulnerabilityBuffer overflow in the SNMP implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(5) and 6.x before 6.1(1) and MDS 9000 devices …EPSS 3.4%7.8CVE-2014-2201Cisco nx-os vulnerabilityThe Message Transfer Service (MTS) in Cisco NX-OS before 6.2(7) on MDS 9000 devices and 6.0 before 6.0(2) on Nexus 7000 devices allows remote attacke…EPSS 1.9%7.8CVE-2012-0352Cisco nx-os vulnerabilityCisco NX-OS 4.2.x before 4.2(1)SV1(5.1) on Nexus 1000v series switches; 4.x and 5.0.x before 5.0(2)N1(1) on Nexus 5000 series switches; and 4.2.x bef…EPSS 1.3%7.6CVE-2014-3261Cisco unified computing system 6120xp fabric interconnect memory buffer overflow vulnerabilityBuffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX…EPSS 2.0%7.5CVE-2004-0079Cisco firewall services module null pointer dereference vulnerabilityThe do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) vi…EPSS 9.5%6.8CVE-2013-5556Cisco nexus 1000v permissions and access controls vulnerabilityThe license-installation module on the Cisco Nexus 1000V switch 4.2(1)SV1(5.2b) and earlier for VMware vSphere, Cisco Nexus 1000V switch 5.2(1)SM1(5.…EPSS 0.32%

Source: NIST National Vulnerability Database (record CVE-2013-1178), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.