Cisco Event Response Page
Cisco Event Response: February 2022 Semiannual Cisco FXOS and NX-OS Software Security Advisory Bundled Publication
-
Cisco released its semiannual Cisco FXOS and NX-OS Software Security Advisory Bundled Publication on February 23, 2022. In direct response to customer feedback, Cisco releases bundles of Cisco FXOS and NX-OS Software Security Advisories on the fourth Wednesday of the month in February and August of each calendar year.
The February 23, 2022, release of the Cisco FXOS and NX-OS Software Security Advisory Bundled Publication includes four Cisco Security Advisories that describe four vulnerabilities in Cisco FXOS Software, Cisco NX-OS Software, and Cisco UCS Software. Cisco has released software updates that address these vulnerabilities.
-
The following table identifies Cisco Security content that is associated with this bundled publication:
Cisco Security Advisory CVE ID Security Impact Rating CVSS Base Score Affected Platforms cisco-sa-nxos-nxapi-cmdinject-ULukNMZ2
Cisco NX-OS Software NX-API Command Injection VulnerabilityCVE-2022-20650High8.8Nexus 3000 Series Switches
Nexus 5500 Platform Switches
Nexus 5600 Platform Switches
Nexus 6000 Series Switches
Nexus 9000 Series Switches in standalone NX-OS modecisco-sa-cfsoip-dos-tpykyDr
Cisco NX-OS Software Cisco Fabric Services Over IP Denial of Service VulnerabilityCVE-2022-20624High8.6Nexus 3000 Series Switches
Nexus 9000 Series Switches in standalone NX-OS mode
UCS 6400 Series Fabric Interconnectscisco-sa-nxos-bfd-dos-wGQXrzxn
Cisco Nexus 9000 Series Switches Bidirectional Forwarding Detection Denial of Service VulnerabilityCVE-2022-20623High8.6Nexus 9000 Series Switches in standalone NX-OS modecisco-sa-cdp-dos-G8DPLWYG
Cisco FXOS and NX-OS Software Cisco Discovery Protocol Service Denial of Service VulnerabilityCVE-2022-20625Medium4.3Firepower 4100 Series
Firepower 9300 Security Appliances
MDS 9000 Series Multilayer Switches
Nexus 1000 Virtual Edge for VMware vSphere
Nexus 1000V Switch for Microsoft Hyper-V
Nexus 1000V Switch for VMware vSphere
Nexus 3000 Series Switches
Nexus 5500 Platform Switches
Nexus 5600 Platform Switches
Nexus 6000 Series Switches
Nexus 7000 Series Switches
Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode
Nexus 9000 Series Switches in standalone NX-OS mode
UCS 6200 Series Fabric Interconnects
UCS 6300 Series Fabric Interconnects
UCS 6400 Series Fabric InterconnectsRelated Resources
Cisco Security Vulnerability Policy
MITRE Common Vulnerabilities and Exposures
Common Vulnerability Scoring System and the Security Impact Rating
Common Vulnerability Scoring System Q & A