First published: Wed Apr 23 2014(Updated: )
Cisco IOS before 15.3(1)T on Cisco 2900 devices, when a VWIC2-2MFT-T1/E1 card is configured for TDM/HDLC mode, allows remote attackers to cause a denial of service (serial-interface outage) via certain Frame Relay traffic, aka Bug ID CSCub13317.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | <=15.3\(3\)m2 | |
Cisco IOS | =15.3 | |
Cisco IOS | =15.3\(2\)s | |
Cisco IOS | =15.3\(3\)m | |
Cisco IOS | =15.3\(3\)m1 | |
Cisco IOS | =15.3\(3\)s | |
Cisco IOS | =15.3s | |
Cisco Catalyst 2900 | ||
Cisco Catalyst 2900 | =lre_xl | |
Cisco Catalyst 2900 | =xl | |
Cisco Catalyst 2900 VLAN | ||
Cisco Catalyst 2900xl |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-3918 is classified as a high severity vulnerability due to its potential to cause a denial of service on affected devices.
To mitigate CVE-2012-3918, upgrade Cisco IOS software to version 15.3(3)m3 or later.
CVE-2012-3918 affects Cisco IOS versions before 15.3(1)T on Cisco 2900 devices utilizing VWIC2-2MFT-T1/E1 cards.
CVE-2012-3918 allows remote attackers to cause a denial of service by sending specific Frame Relay traffic.
There is no specific workaround for CVE-2012-3918; upgrading to a patched version is the recommended approach.