First published: Thu May 03 2012(Updated: )
The sensor in Cisco Intrusion Prevention System (IPS) 7.0 and 7.1 allows remote attackers to cause a denial of service (file-handle exhaustion and mainApp hang) by making authentication attempts that exceed the configured limit, aka Bug ID CSCto51204.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Intrusion Prevention System | =7.1 | |
Cisco Intrusion Prevention System | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4022 has a moderate severity rating due to its potential for denial of service.
To fix CVE-2011-4022, update Cisco Intrusion Prevention System to version 7.1.3 or later.
CVE-2011-4022 can lead to file-handle exhaustion and cause the main application to hang.
CVE-2011-4022 can be exploited by remote attackers by exceeding authentication attempt limits.
A workaround for CVE-2011-4022 involves configuring stricter limits on authentication attempts.