Preview Tool

Cisco Bug: CSCuq92077 - APIC vulnerable to DDOS reflection attack

Last Modified

Sep 10, 2019

Products (1)

  • Cisco Application Policy Infrastructure Controller (APIC)

Known Affected Releases


Description (partial)

APIC is vulnerable to NTP DDoS reflection attacks.

Prior to the fix described in Cisco bug ID CSCuo97759, the APIC without an NTP provider configured/applied, the ntpd service starts in server mode.

After the fix, the APIC without any NTP provider configured/applied, will not have the NTPd service started.
Bug details contain sensitive information and therefore require a account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.