CVE-2012-0381: High severity cisco ios vulnerability
The IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.2.xSG before 3.2.2SG allows remote attackers to cause a denial of service (device reload) by sending IKE UDP packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCts38429.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0381?
The severity of CVE-2012-0381 is classified as critical due to its potential to cause a denial of service by triggering device reloads.
How do I fix CVE-2012-0381?
To fix CVE-2012-0381, update affected Cisco IOS versions to the latest patch or upgrade to a non-affected version.
Which Cisco IOS versions are affected by CVE-2012-0381?
CVE-2012-0381 affects Cisco IOS versions 12.2 through 12.4 and 15.0 through 15.2.
What impact can CVE-2012-0381 have on my network?
CVE-2012-0381 can result in a denial of service, causing devices to reload and disrupt network services.
Are there any workarounds for CVE-2012-0381?
Workarounds include filtering IKE UDP traffic and reviewing network configurations to limit exposure to affected devices.