CVE-2012-1370: Buffer Overflow
Published Aug 6, 2012
·Updated
Cisco AnyConnect Secure Mobility Client 3.0 before 3.0.08057 allows remote authenticated users to cause a denial of service (vpnagentd process crash) via a crafted packet, aka Bug ID CSCty01670.
Affected Software
3 affected components
cisco AnyConnect Secure Mobility Client=3.0
cisco AnyConnect Secure Mobility Client=3.0.0629
cisco AnyConnect Secure Mobility Client=3.0.07059
Event History
Aug 6, 2012
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-1370?
CVE-2012-1370 is classified as a Medium severity vulnerability that can cause a denial of service.
2
How do I fix CVE-2012-1370?
To fix CVE-2012-1370, upgrade Cisco AnyConnect Secure Mobility Client to version 3.0.08057 or later.
3
Who is affected by CVE-2012-1370?
CVE-2012-1370 affects users of Cisco AnyConnect Secure Mobility Client versions prior to 3.0.08057.
4
What type of attack does CVE-2012-1370 involve?
CVE-2012-1370 involves a denial of service attack caused by remote authenticated users sending crafted packets.
5
What component does CVE-2012-1370 impact?
CVE-2012-1370 impacts the vpnagentd process within the Cisco AnyConnect Secure Mobility Client.