CVE-2016-1465: Cisco NX-OS

Medium severity, CVSS 6.5. EPSS: 0.9% chance of exploitation in the next 30 days.

Cisco Nexus 1000v Application Virtual Switch (AVS) devices before 5.2(1)SV3(1.5i) allow remote attackers to cause a denial of service (ESXi hypervisor crash and purple screen) via a crafted Cisco Discovery Protocol packet that triggers an out-of-bounds memory access, aka Bug ID CSCuw57985.

Affected products

  • Cisco NX-OS: version 4.0(4)sv1(1) only; version 4.0(4)sv1(2) only; version 4.0(4)sv1(3) only; version 4.0(4)sv1(3a) only; version 4.0(4)sv1(3b) only; version 4.0(4)sv1(3c) only; …

Published 2016-07-28. Last modified 2026-06-17.