CVE-2012-0354: Input Validation
The Threat Detection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.0 through 8.2 before 8.2(5.20), 8.3 before 8.3(2.29), 8.4 before 8.4(3), 8.5 before 8.5(1.6), and 8.6 before 8.6(1.1) allows remote attackers to cause a denial of service (device reload) via (1) IPv4 or (2) IPv6 packets that trigger a shun event, aka Bug ID CSCtw35765.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0354?
CVE-2012-0354 is rated as having a moderate severity level due to potential denial of service vulnerabilities.
How do I fix CVE-2012-0354?
To remediate CVE-2012-0354, upgrade your Cisco Adaptive Security Appliance software to the recommended versions or later as specified in the advisory.
What devices are affected by CVE-2012-0354?
CVE-2012-0354 affects Cisco Adaptive Security Appliances 5500 series and the ASA Services Module in the Catalyst 6500 series running specific vulnerable software versions.
What is the nature of the vulnerability in CVE-2012-0354?
CVE-2012-0354 involves a flaw in the Threat Detection feature that could lead to denial of service conditions.
When was CVE-2012-0354 disclosed?
CVE-2012-0354 was disclosed on March 14, 2012, as part of a Cisco security advisory.