First published: Thu Mar 29 2012(Updated: )
Memory leak in the NAT feature in Cisco IOS 12.4, 15.0, and 15.1 allows remote attackers to cause a denial of service (memory consumption, and device hang or reload) via SIP packets that require translation, related to a "memory starvation vulnerability," aka Bug ID CSCti35326.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | =12.4 | |
Cisco IOS | =15.0 | |
Cisco IOS | =15.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0383 is considered a high severity vulnerability due to its potential to cause denial of service.
To address CVE-2012-0383, upgrade to a Cisco IOS version that is not affected, such as versions 15.1 or later.
CVE-2012-0383 affects Cisco IOS versions 12.4, 15.0, and 15.1.
The impact of CVE-2012-0383 can include memory exhaustion, device hangs, and potential reboots.
CVE-2012-0383 can be exploited by remote attackers sending specially crafted SIP packets.