CVE-2021-27853

Published Sep 27, 2022

Last updated 6 months ago

Overview

Description
Layer 2 network filtering capabilities such as IPv6 RA guard or ARP inspection can be bypassed using combinations of VLAN 0 headers and LLC/SNAP headers.
Source
cret@cert.org
NVD status
Modified
Products
ieee_802.2, p802.1q, catalyst_6503-e_firmware, catalyst_6504-e_firmware, catalyst_6506-e_firmware, catalyst_6509-e_firmware, catalyst_6509-neb-a_firmware, catalyst_6509-v-e_firmware, catalyst_6513-e_firmware, catalyst_6807-xl_firmware, catalyst_6840-x_firmware, catalyst_6880-x_firmware, catalyst_c6816-x-le_firmware, catalyst_c6824-x-le-40g_firmware, catalyst_c6832-x-le_firmware, catalyst_c6840-x-le-40g_firmware, catalyst_6800ia_firmware, ios_xe, meraki_ms390_firmware, meraki_ms210_firmware, meraki_ms225_firmware, meraki_ms250_firmware, meraki_ms350_firmware, meraki_ms355_firmware, meraki_ms410_firmware, meraki_ms420_firmware, meraki_ms425_firmware, meraki_ms450_firmware, nexus_93180yc-ex_firmware, nexus_93180yc-fx_firmware, nexus_93180yc-fx3_firmware, nexus_93240yc-fx2_firmware, nexus_93360yc-fx2_firmware, nexus_93120tx_firmware, nexus_93108tc-ex_firmware, nexus_9348gc-fxp_firmware, nexus_93108tc-fx_firmware, nexus_93108tc-fx3p_firmware, nexus_93216tc-fx2_firmware, n9k-c9316d-gx_firmware, n9k-c93600cd-gx_firmware, n9k-c9332d-gx2b_firmware, n9k-c9348d-gx2a_firmware, n9k-c9364d-gx2a_firmware, n9k-x97160yc-ex_firmware, n9k-x9788tc-fx_firmware, n9k-x9564px_firmware, n9k-x9464px_firmware, n9k-x9564tx_firmware, n9k-x9464tx2_firmware, nexus_9636pq_firmware, nexus_x9636q-r_firmware, nexus_9536pq_firmware, nexus_9432pq_firmware, nexus_9736pq_firmware, n9k-x9736c-fx_firmware, n9k-x9732c-ex_firmware, n9k-x9732c-fx_firmware, n9k-x9736c-ex_firmware, n9k-x9636c-rx_firmware, n9k-x9636c-r_firmware, n9k-x9432c-s_firmware, nexus_9716d-gx_firmware, nexus_9504_firmware, nexus_9508_firmware, nexus_9516_firmware, nexus_92160yc-x_firmware, nexus_9272q_firmware, nexus_92304qc_firmware, nexus_9236c_firmware, nexus_92300yc_firmware, nexus_92348gc-x_firmware, nexus_9364c_firmware, nexus_9336c-fx2_firmware, nexus_9336c-fx2-e_firmware, nexus_9332c_firmware, nexus_9364c-gx_firmware, nexus_9800_firmware, sf500-24_firmware, sf-500-24mp_firmware, sf500-24p_firmware, sf500-48_firmware, sf500-48mp_firmware, sf500-18p_firmware, sg500-28_firmware, sg500-28mpp_firmware, sg500-28p_firmware, sg500-52_firmware, sg500-52mp_firmware, sg500-52p_firmware, sg500x-24_firmware, sg500x-24mpp_firmware, sg500x-24p_firmware, sg500x-48_firmware, sg500x-48mpp_firmware, sg500x-48p_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
4.7
Impact score
1.4
Exploitability score
2.8
Vector string
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
Severity
MEDIUM

Weaknesses

cret@cert.org
CWE-290
nvd@nist.gov
CWE-290

Social media

Hype score
Not currently trending

Configurations