CVE-2012-3899: Medium severity cisco intrusion prevention system vulnerability
sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and process crash, and traffic-inspection outage) via network traffic, aka Bug ID CSCtn23051.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3899?
CVE-2012-3899 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2012-3899?
To mitigate CVE-2012-3899, upgrade the Cisco Intrusion Prevention System to a version that has addressed this vulnerability.
What are the affected versions in CVE-2012-3899?
CVE-2012-3899 affects Cisco IPS version 6.0, 6.2, and 7.0 in addition to various 4200 series sensors.
What type of attack does CVE-2012-3899 enable?
CVE-2012-3899 allows remote attackers to exploit memory corruption, leading to process crashes and traffic-inspection outages.
Is there a known workaround for CVE-2012-3899?
There are no official workarounds documented for CVE-2012-3899; applying the recommended software update is essential.