vendor:
Nginx
by:
Mohammed Alshehri
7.7
CVSS
HIGH
Denial of Service (DOS)
400
CWE
Product Name: Nginx
Affected Version From: 2000.6.18
Affected Version To: 1.20.0
Patch Exists: YES
Related CWE: CVE-2021-23017
CPE: nginx:nginx:1.20.0
Metasploit:
https://www.rapid7.com/db/vulnerabilities/redhat_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/alma_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp8-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp5-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/rocky_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/nginx-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/amazon_linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2021-23017/, https://www.rapid7.com/db/vulnerabilities/freebsd-cve-2021-23017/
Platforms Tested: Ubuntu 18.04.4 LTS bionic
2022
Nginx 1.20.0 – Denial of Service (DOS)
The exploit allows an attacker to send poisoned ARP packets to a target, causing a Denial of Service (DOS) on Nginx 1.20.0. The vulnerability was discovered by X41 D-SEC GmbH, Luis Merino, Markus Vervier, and Eric Sesterhenn. By exploiting this vulnerability, an attacker can disrupt the normal functioning of the Nginx service.
Mitigation:
To mitigate this vulnerability, it is recommended to update Nginx to a version that is not affected by the exploit. Additionally, network administrators should monitor and filter ARP traffic to prevent the reception of malicious ARP packets.