CVE-2011-4022: Medium severity Cisco Intrusion Prevention System vulnerability
Published May 3, 2012
·Updated
The sensor in Cisco Intrusion Prevention System (IPS) 7.0 and 7.1 allows remote attackers to cause a denial of service (file-handle exhaustion and mainApp hang) by making authentication attempts that exceed the configured limit, aka Bug ID CSCto51204.
Affected Software
2 affected components
Cisco Intrusion Prevention System=7.1
Cisco Intrusion Prevention System=7.0
Event History
May 3, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4022?
CVE-2011-4022 has a moderate severity rating due to its potential for denial of service.
2
How do I fix CVE-2011-4022?
To fix CVE-2011-4022, update Cisco Intrusion Prevention System to version 7.1.3 or later.
3
What impact does CVE-2011-4022 have on Cisco IPS 7.0 and 7.1?
CVE-2011-4022 can lead to file-handle exhaustion and cause the main application to hang.
4
Who is exploited by CVE-2011-4022?
CVE-2011-4022 can be exploited by remote attackers by exceeding authentication attempt limits.
5
Is there a workaround for CVE-2011-4022 if I cannot update?
A workaround for CVE-2011-4022 involves configuring stricter limits on authentication attempts.