Lucene search

K
nvd[email protected]NVD:CVE-2010-2836
HistorySep 23, 2010 - 7:00 p.m.

CVE-2010-2836

2010-09-2319:00:13
CWE-399
web.nvd.nist.gov
3

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

49.5%

Memory leak in the SSL VPN feature in Cisco IOS 12.4, 15.0, and 15.1, when HTTP port redirection is enabled, allows remote attackers to cause a denial of service (memory consumption) by improperly disconnecting SSL sessions, leading to connections that remain in the CLOSE-WAIT state, aka Bug ID CSCtg21685.

Affected configurations

Nvd
Node
ciscoiosMatch12.4
OR
ciscoiosMatch12.4gc
OR
ciscoiosMatch12.4mda
OR
ciscoiosMatch12.4mr
OR
ciscoiosMatch12.4mra
OR
ciscoiosMatch12.4sw
OR
ciscoiosMatch12.4xa
OR
ciscoiosMatch12.4xb
OR
ciscoiosMatch12.4xc
OR
ciscoiosMatch12.4xd
OR
ciscoiosMatch12.4xe
OR
ciscoiosMatch12.4xf
OR
ciscoiosMatch12.4xg
OR
ciscoiosMatch12.4xj
OR
ciscoiosMatch12.4xk
OR
ciscoiosMatch12.4xl
OR
ciscoiosMatch12.4xm
OR
ciscoiosMatch12.4xn
OR
ciscoiosMatch12.4xp
OR
ciscoiosMatch12.4xt
OR
ciscoiosMatch12.4xv
OR
ciscoiosMatch12.4xw
OR
ciscoiosMatch12.4xy
OR
ciscoiosMatch12.4xz
OR
ciscoiosMatch12.4ya
OR
ciscoiosMatch12.4yb
OR
ciscoiosMatch12.4yd
OR
ciscoiosMatch15.0m
OR
ciscoiosMatch15.0xa
OR
ciscoiosMatch15.1\(1\)xb1
OR
ciscoiosMatch15.1t

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

49.5%