Lucene search

K
cveCiscoCVE-2012-5017
HistoryApr 23, 2014 - 11:52 a.m.

CVE-2012-5017

2014-04-2311:52:59
CWE-20
cisco
web.nvd.nist.gov
33
cve-2012-5017
cisco ios
denial of service
remote authentication
vpn
cve
nvd
security vulnerability

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

44.7%

Cisco IOS before 15.1(1)SY1 allows remote authenticated users to cause a denial of service (device reload) by establishing a VPN session and then sending malformed IKEv2 packets, aka Bug ID CSCub39268.

Affected configurations

Nvd
Node
ciscoiosRange15.1\(1\)sy
OR
ciscoiosMatch15.1
AND
ciscoasr_1001Match-
OR
ciscoasr_1002Match-
OR
ciscoasr_1002-xMatch-
OR
ciscoasr_1002_fixed_routerMatch-
OR
ciscoasr_1004Match-
OR
ciscoasr_1006Match-
OR
ciscoasr_1023_routerMatch-
VendorProductVersionCPE
ciscoios*cpe:2.3:o:cisco:ios:*:*:*:*:*:*:*:*
ciscoios15.1cpe:2.3:o:cisco:ios:15.1:*:*:*:*:*:*:*
ciscoasr_1001-cpe:2.3:h:cisco:asr_1001:-:*:*:*:*:*:*:*
ciscoasr_1002-cpe:2.3:h:cisco:asr_1002:-:*:*:*:*:*:*:*
ciscoasr_1002-x-cpe:2.3:h:cisco:asr_1002-x:-:*:*:*:*:*:*:*
ciscoasr_1002_fixed_router-cpe:2.3:h:cisco:asr_1002_fixed_router:-:*:*:*:*:*:*:*
ciscoasr_1004-cpe:2.3:h:cisco:asr_1004:-:*:*:*:*:*:*:*
ciscoasr_1006-cpe:2.3:h:cisco:asr_1006:-:*:*:*:*:*:*:*
ciscoasr_1023_router-cpe:2.3:h:cisco:asr_1023_router:-:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

44.7%

Related for CVE-2012-5017