First published: Thu Sep 27 2012(Updated: )
Cisco IOS XE 03.02.00.XO.15.0(2)XO on Catalyst 4500E series switches, when a Supervisor Engine 7L-E card is installed, allows remote attackers to cause a denial of service (card reload) via malformed packets that trigger uncorrected ECC error messages, aka Bug ID CSCty88456.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE | =3.2.00.xo.15.0\(2\)xo | |
Cisco Catalyst 4500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4622 is classified as a high severity vulnerability due to its potential to cause denial of service and reload of the affected card.
To fix CVE-2012-4622, upgrade to a later version of Cisco IOS XE that addresses this vulnerability, as listed in Cisco's security advisory.
CVE-2012-4622 affects Cisco Catalyst 4500E series switches equipped with a Supervisor Engine 7L-E card running IOS XE version 3.2.00.XO.15.0(2)XO.
CVE-2012-4622 enables remote attackers to execute a denial of service attack by sending malformed packets that trigger uncorrected ECC error messages.
While a specific workaround is not provided for CVE-2012-4622, minimizing exposure by implementing network segmentation and monitoring can help mitigate risks.