CVE-2026-20010

7.4

Cisco · NX-OS Software

A vulnerability in the LLDP feature of Cisco NX-OS allows an unauthenticated, adjacent attacker to trigger a process restart and device reload via crafted packets, resulting in a denial of service.

Executive summary

A critical denial of service vulnerability in Cisco NX-OS allows unauthenticated, adjacent attackers to force an unexpected device reload by sending crafted LLDP packets.

Vulnerability

This vulnerability is caused by improper handling of specific fields within an LLDP frame, categorized as a buffer access issue with an incorrect length value (CWE-805). An unauthenticated, adjacent attacker can trigger this condition by sending a malformed packet to the device interface.

Business impact

Successful exploitation results in a denial of service (DoS) condition, forcing an unexpected reload of the affected network infrastructure. Given the CVSS score of 7.4, this represents a significant risk to network availability, potentially disrupting critical business operations and connectivity for downstream services.

Remediation

Immediate Action: Update the affected Cisco NX-OS software to the versions specified in the official vendor advisory.

Proactive Monitoring: Monitor system logs for unexpected process restarts or device reloads that may indicate an attempt to exploit the LLDP service.

Compensating Controls: Restrict physical or logical access to switch interfaces to trusted personnel only, as the attack requires an adjacent connection to the device.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

Organizations utilizing the identified versions of Cisco NX-OS should prioritize scheduling maintenance windows to apply the necessary security patches. Given the potential for service interruption, verifying the integrity of the patch and testing in a staging environment is advised before production deployment to maintain network stability.

More Cisco CVEs

Sources