First published: Thu May 31 2012(Updated: )
Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XRv 9000 | <=4.2.0 | |
Cisco ASR 9000v-v2 | ||
Cisco IOS XRv 9000 | =4.0.3 | |
Cisco IOS XRv 9000 | =4.0.4 | |
Cisco IOS XRv 9000 | =4.1 | |
Cisco IOS XRv 9000 | =4.1.1 | |
Cisco IOS XRv 9000 | =4.1.2 | |
Cisco IOS XRv 9000 | =4.2.0 | |
Cisco CRS Performance Route Processor |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2488 can cause a denial of service, resulting in packet transmission outages on affected Cisco devices.
CVE-2012-2488 affects Cisco IOS XR versions before 4.2.1 on ASR 9000 series and CRS series devices.
Yes, CVE-2012-2488 can be exploited remotely by attackers sending crafted packets.
Mitigation for CVE-2012-2488 involves upgrading affected Cisco IOS XR devices to version 4.2.1 or later.
CVE-2012-2488 is associated with Bug IDs CSCty94537 and CSCtz62593.