CVE-2012-2472: High severity cisco adaptive security appliance software vulnerability
Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-allocated secondary pinholes, which might allow remote attackers to cause a denial of service (CPU consumption) via crafted SIP traffic, aka Bug ID CSCtz63143.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2472?
The severity of CVE-2012-2472 is considered high due to the potential for remote attackers to cause a denial of service.
How do I fix CVE-2012-2472?
To fix CVE-2012-2472, upgrade your Cisco Adaptive Security Appliance Software to a version that addresses the vulnerability.
Which devices are affected by CVE-2012-2472?
CVE-2012-2472 affects Cisco Adaptive Security Appliances (ASA) 5500 series devices running software versions 8.2 and 8.4.
What type of attack does CVE-2012-2472 facilitate?
CVE-2012-2472 facilitates denial of service attacks through excessive CPU consumption caused by crafted SIP traffic.
When was CVE-2012-2472 published?
CVE-2012-2472 was published in 2012, highlighting a vulnerability in certain Cisco ASA software versions.