Lucene search

K
ciscoCiscoCISCO-SA-20120926-NAT
HistorySep 26, 2012 - 4:00 p.m.

Cisco IOS Software Network Address Translation Vulnerabilities

2012-09-2616:00:00
tools.cisco.com
19

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.006

Percentile

77.8%

The Cisco IOS Software Network Address Translation (NAT) feature contains two denial of service (DoS) vulnerabilities in the translation of IP packets.

The vulnerabilities are caused when packets in transit on the vulnerable device require translation.

Cisco has released software updates that address these vulnerabilities.
This advisory is available at the following link:

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120926-nat[β€œhttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120926-nat”]

Note: The September 26, 2012, Cisco IOS Software Security Advisory bundled publication includes nine Cisco Security Advisories. Eight of the advisories address vulnerabilities in Cisco IOS Software, and one advisory addresses a vulnerability in Cisco Unified Communications Manager. Each Cisco IOS Software Security Advisory lists the Cisco IOS Software releases that correct the vulnerability or vulnerabilities detailed in the advisory as well as the Cisco IOS Software releases that correct all Cisco IOS Software vulnerabilities in the September 2012 bundled publication.

Individual publication links are in β€œCisco Event Response: Semi-Annual Cisco IOS Software Security Advisory Bundled Publication” at the following link:

http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_sep12.html[β€œhttp://www.cisco.com/web/about/security/intelligence/Cisco_ERP_sep12.html”]

Affected configurations

Vulners
Node
ciscoiosMatch12.4
OR
ciscoiosMatch12.4t
OR
ciscoiosMatch12.4md
OR
ciscoiosMatch12.2sxh
OR
ciscoiosMatch12.2sxi
OR
ciscoiosMatch12.4mda
OR
ciscoiosMatch12.4yg
OR
ciscoiosMatch15.0m
OR
ciscoiosMatch15.0xa
OR
ciscoiosMatch15.1t
OR
ciscoiosMatch15.1xb
OR
ciscoiosMatch12.4m
OR
ciscoiosMatch15.1m
OR
ciscoiosMatch15.1gc
OR
ciscoiosMatch12.2sxj
OR
ciscoiosMatch12.4mdb
OR
ciscoiosMatch15.2gc
OR
ciscoiosMatch12.4\(25e\)
OR
ciscoiosMatch12.4\(23b\)
OR
ciscoiosMatch12.4\(25a\)
OR
ciscoiosMatch12.4\(23d\)
OR
ciscoiosMatch12.4\(23e\)
OR
ciscoiosMatch12.4\(25\)
OR
ciscoiosMatch12.4\(25c\)
OR
ciscoiosMatch12.4\(25b\)
OR
ciscoiosMatch12.4\(23a\)
OR
ciscoiosMatch12.4\(25d\)
OR
ciscoiosMatch12.4\(23c\)
OR
ciscoiosMatch12.4\(25f\)
OR
ciscoiosMatch12.4\(24\)t3
OR
ciscoiosMatch12.4\(15\)t15
OR
ciscoiosMatch12.4\(24\)t5
OR
ciscoiosMatch12.4\(24\)t4
OR
ciscoiosMatch12.4\(15\)t13
OR
ciscoiosMatch12.4\(24\)t2
OR
ciscoiosMatch12.4\(24\)t1
OR
ciscoiosMatch12.4\(24\)t6
OR
ciscoiosMatch12.4\(15\)t13b
OR
ciscoiosMatch12.4\(15\)t14
OR
ciscoiosMatch12.4\(15\)t16
OR
ciscoiosMatch12.4\(24\)t4a
OR
ciscoiosMatch12.4\(24\)t4b
OR
ciscoiosMatch12.4\(24\)t3e
OR
ciscoiosMatch12.4\(24\)t4c
OR
ciscoiosMatch12.4\(15\)t17
OR
ciscoiosMatch12.4\(24\)t4d
OR
ciscoiosMatch12.4\(24\)t4e
OR
ciscoiosMatch12.4\(24\)t3f
OR
ciscoiosMatch12.4\(24\)t4f
OR
ciscoiosMatch12.4\(24\)md1
OR
ciscoiosMatch12.4\(24\)md
OR
ciscoiosMatch12.4\(24\)md3
OR
ciscoiosMatch12.4\(24\)md2
OR
ciscoiosMatch12.4\(24\)md5
OR
ciscoiosMatch12.4\(24\)md4
OR
ciscoiosMatch12.4\(24\)md6
OR
ciscoiosMatch12.2\(33\)sxh8a
OR
ciscoiosMatch12.2\(33\)sxh8
OR
ciscoiosMatch12.2\(33\)sxh7w
OR
ciscoiosMatch12.2\(33\)sxh8b
OR
ciscoiosMatch12.2\(33\)sxi5
OR
ciscoiosMatch12.2\(33\)sxi6
OR
ciscoiosMatch12.2\(33\)sxi5a
OR
ciscoiosMatch12.4\(24\)mda5
OR
ciscoiosMatch12.4\(24\)mda3
OR
ciscoiosMatch12.4\(24\)mda4
OR
ciscoiosMatch12.4\(24\)mda1
OR
ciscoiosMatch12.4\(24\)mda2
OR
ciscoiosMatch12.4\(24\)mda6
OR
ciscoiosMatch12.4\(24\)mda7
OR
ciscoiosMatch12.4\(24\)mda8
OR
ciscoiosMatch12.4\(24\)mda10
OR
ciscoiosMatch12.4\(24\)mda9
OR
ciscoiosMatch12.4\(24\)yg3
OR
ciscoiosMatch12.4\(24\)yg4
OR
ciscoiosMatch12.4\(24\)yg1
OR
ciscoiosMatch12.4\(24\)yg2
OR
ciscoiosMatch15.0\(1\)m1
OR
ciscoiosMatch15.0\(1\)m5
OR
ciscoiosMatch15.0\(1\)m4
OR
ciscoiosMatch15.0\(1\)m3
OR
ciscoiosMatch15.0\(1\)m2
OR
ciscoiosMatch15.0\(1\)m6
OR
ciscoiosMatch15.0\(1\)m
OR
ciscoiosMatch15.0\(1\)m7
OR
ciscoiosMatch15.0\(1\)m6a
OR
ciscoiosMatch15.0\(1\)xa2
OR
ciscoiosMatch15.0\(1\)xa4
OR
ciscoiosMatch15.0\(1\)xa1
OR
ciscoiosMatch15.0\(1\)xa3
OR
ciscoiosMatch15.0\(1\)xa
OR
ciscoiosMatch15.0\(1\)xa5
OR
ciscoiosMatch15.1\(2\)t
OR
ciscoiosMatch15.1\(1\)t4
OR
ciscoiosMatch15.1\(3\)t2
OR
ciscoiosMatch15.1\(1\)t1
OR
ciscoiosMatch15.1\(2\)t0a
OR
ciscoiosMatch15.1\(1\)t3
OR
ciscoiosMatch15.1\(2\)t3
OR
ciscoiosMatch15.1\(2\)t4
OR
ciscoiosMatch15.1\(1\)t2
OR
ciscoiosMatch15.1\(3\)t
OR
ciscoiosMatch15.1\(2\)t2a
OR
ciscoiosMatch15.1\(3\)t1
OR
ciscoiosMatch15.1\(1\)t
OR
ciscoiosMatch15.1\(2\)t2
OR
ciscoiosMatch15.1\(2\)t1
OR
ciscoiosMatch15.1\(1\)t5
OR
ciscoiosMatch15.1\(1\)xb
OR
ciscoiosMatch15.1\(1\)xb3
OR
ciscoiosMatch15.1\(1\)xb1
OR
ciscoiosMatch15.1\(1\)xb2
OR
ciscoiosMatch15.1\(4\)xb4
OR
ciscoiosMatch15.1\(4\)xb5
OR
ciscoiosMatch15.1\(4\)xb6
OR
ciscoiosMatch15.1\(4\)xb5a
OR
ciscoiosMatch12.4\(23b\)m1
OR
ciscoiosMatch15.1\(4\)m
OR
ciscoiosMatch15.1\(4\)m1
OR
ciscoiosMatch15.1\(4\)m2
OR
ciscoiosMatch15.1\(4\)m0a
OR
ciscoiosMatch15.1\(4\)m0b
OR
ciscoiosMatch15.1\(2\)gc
OR
ciscoiosMatch15.1\(2\)gc1
OR
ciscoiosMatch12.2\(33\)sxj
OR
ciscoiosMatch12.4\(24\)mdb1
OR
ciscoiosMatch12.4\(24\)mdb3
OR
ciscoiosMatch12.4\(24\)mdb4
OR
ciscoiosMatch12.4\(24\)mdb5
OR
ciscoiosMatch12.4\(24\)mdb6
OR
ciscoiosMatch12.4\(24\)mdb7
OR
ciscoiosMatch12.4\(24\)mdb5a
OR
ciscoiosMatch12.4\(24\)mdb8
OR
ciscoiosMatch12.4\(24\)mdb9
OR
ciscoiosMatch15.2\(1\)gc
OR
ciscoiosMatch15.2\(1\)gc1
OR
ciscoiosMatch15.2\(1\)gc2

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

EPSS

0.006

Percentile

77.8%