CVE-2017-3752
An industry-wide vulnerability has been identified in the implementation of the Open Shortest Path First (OSPF) routing protocol used on some Lenovo switches. Exploitation of these implementation flaws may result in attackers being able to erase or alter the routing tables of one or many routers, switches, or other devices that support OSPF within a routing domain.
Published:Aug 9, 2017
Last Modified:Apr 20, 2025
EPS:Aug 9, 2017
EPSS Score:0.00146
CVSS Score:8.2
Affected Products
Vendor
Product
Action
Vendor
Ibm
Product
1\
Ibm
1\
Vendor
Ibm
Product
1g L2-7 Slb
Ibm
1g L2-7 Slb
Vendor
Ibm
Product
Bladecenter
Ibm
Bladecenter
Vendor
Ibm
Product
En2092 1gb Firmware
Ibm
En2092 1gb Firmware
Vendor
Ibm
Product
Fabric Cn4093 10gb Firmware
Ibm
Fabric Cn4093 10gb Firmware
Vendor
Ibm
Product
Fabric En4093\/en4093r 10gb Firmware
Ibm
Fabric En4093\/en4093r 10gb Firmware
Vendor
Ibm
Product
Flex System
Ibm
Flex System
Vendor
Ibm
Product
G8052 Firmware
Ibm
G8052 Firmware
Vendor
Ibm
Product
G8124 Firmware
Ibm
G8124 Firmware
Vendor
Ibm
Product
G8124e Firmware
Ibm
G8124e Firmware
Vendor
Ibm
Product
G8264 Firmware
Ibm
G8264 Firmware
Vendor
Ibm
Product
G8264cs Firmware
Ibm
G8264cs Firmware
Vendor
Ibm
Product
G8264t Firmware
Ibm
G8264t Firmware
Vendor
Ibm
Product
G8316 Firmware
Ibm
G8316 Firmware
Vendor
Ibm
Product
G8332 Firmware
Ibm
G8332 Firmware
Vendor
Ibm
Product
Layer 2\/3 Copper Firmware
Ibm
Layer 2\/3 Copper Firmware
Vendor
Ibm
Product
Rackswitch
Ibm
Rackswitch
Vendor
Ibm
Product
Virtual Fabric 10gb
Ibm
Virtual Fabric 10gb
Vendor
Lenovo
Product
Fabric Cn4093 10gb Firmware
Lenovo
Fabric Cn4093 10gb Firmware
Vendor
Lenovo
Product
Fabric En4093r 10gb Firmware
Lenovo
Fabric En4093r 10gb Firmware
Vendor
Lenovo
Product
Flex System
Lenovo
Flex System
Vendor
Lenovo
Product
G8052 Firmware
Lenovo
G8052 Firmware
Vendor
Lenovo
Product
G8124e Firmware
Lenovo
G8124e Firmware
Vendor
Lenovo
Product
G8264 Firmware
Lenovo
G8264 Firmware
Vendor
Lenovo
Product
G8264cs Firmware
Lenovo
G8264cs Firmware
Vendor
Lenovo
Product
G8272 Firmware
Lenovo
G8272 Firmware
Vendor
Lenovo
Product
G8296 Firmware
Lenovo
G8296 Firmware
Vendor
Lenovo
Product
G8332 Firmware
Lenovo
G8332 Firmware
Vendor
Lenovo
Product
Rackswitch
Lenovo
Rackswitch
Vendor
Lenovo
Product
Si4091 Firmware
Lenovo
Si4091 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
