BSA-2017-236

Brocade Fabric OS

2 more products

21510

28 April 2017

28 April 2017

Closed

N/A

N/A

N/A

N/A

Summary

Security Advisory ID : BSA-2017-236

Component : Low Bandwidth ICMP Attack

Revision : 1.0: Interim

Blacknurse is a low bandwidth ICMP attack that is capable of doing denial of service to well knownfirewalls.Most ICMP attacks that we see are based on ICMP Type 8 Code 0 also called a ping flood attack. BlackNurse is based on ICMP with Type 3 Code 3 packets. We know that when a user has allowed ICMP Type 3 Code 3 to outside interfaces, the BlackNurse attack becomes highly effective even at low bandwidth.

Affected Products

Brocade is investigating its product lines to determine which products may be affected by this vulnerability and the impact on each affected product.

Products Confirmed Not Vulnerable

Brocade 5400 vRouter, Brocade 5600 vRouter, Brocade Fabric OS, Brocade FastIron OS, Brocade NetIron OS, Brocade Network Advisor, Brocade Network OS, Brocade SDN Controller, Brocade ServerIron ADX, Brocade Services Director, Brocade SLX-OS, Brocade Virtual ADX, and Brocade Virtual Web Application Firewall are confirmed not affected by this vulnerability.

Workaround

There are no workarounds that address this vulnerability.

Revision History

Version Change Date
1.0 Initial Publication August 25, 2017
1.0 Initial Publication April 28, 2017