HomeSecurityBootloader Vulnerability Affects Over 100 Cisco Switches

Bootloader Vulnerability Affects Over 100 Cisco Switches

Cisco on Wednesday announced patches for a vulnerability in the bootloader of its NX-OS software that could allow attackers to bypass image signature verification.

See also: Vulnerability detected in Thinkware Cloud APK

Bootloader vulnerability

Known as CVE-2024-20397, the security vulnerability exists due to insecure bootloader settings that allow an attacker to execute specific commands to bypass the verification process and load unverified software.

While no authentication is required to successfully exploit the flaw, physical access is required, Cisco notes in advisory . The flaw can also be exploited by an authenticated, local attacker with administrator privileges.

According to Cisco, the issue only affects MDS, Nexus , and UCS Fabric Interconnect that support Secure Boot, and not legacy devices without the feature. In total, the company's advisory lists more than 100 device models affected.

The tech giant says this bootloader vulnerability affects all MDS 9000 series multi-layer switches, Nexus 3000 and 7000 series switches , Nexus 9000 series fabric switches in ACI mode , Nexus 9000 series switches in NX-OS standalone mode , and UCS 6400 and 65 series switches .

See also: SolarWinds XSS vulnerability allows malware insertion

Bootloader Vulnerability Affects Over 100 Cisco Switches

Cisco notes that there are no available fixes for this security flaw. However, the company has released several NX-OS software updates to fix the flaw across all affected product lines and plans to release updates for all devices by the end of this month.

The only devices that will not receive a patch are the Nexus 92160YC-X (N9K-C92160YC-X) switches, which have been discontinued, Cisco notes in its advisory.

Although bootloader CVE-2024-20397 is considered a moderate severity vulnerability, users should update devices as soon as possible, as attackers have been known to exploit such vulnerabilities in Cisco products for which patches have been released.

See also: Vulnerability in SailPoint IdentityIQ allows unauthorized access to files

When it comes to system security, there are some common vulnerabilities to consider. Here are some of them:

  • Weak encryption and inadequate password protection
  • Lack of software updates and security upgrades
  • Insecure network and data storage settings
  • Social engineering and spam emails
  • Malware and viruses

It is important to be aware of these vulnerabilities and take appropriate precautions to protect our systems from unwanted impacts.

Source: securityweek

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

Absentee Mia
Absentee Miahttps://www.secnews.gr
Being your self, in a world that constantly tries to change you, is your greatest achievement

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS