CVE-2012-4623: Input Validation
The DHCPv6 server in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x, 3.1.xS before 3.1.4S, 3.1.xSG and 3.2.xSG before 3.2.5SG, 3.2.xS, 3.2.xXO, 3.3.xS, and 3.3.xSG before 3.3.1SG allows remote attackers to cause a denial of service (device reload) via a malformed DHCPv6 packet, aka Bug ID CSCto57723.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4623?
CVE-2012-4623 has a medium severity rating and can lead to a denial of service condition.
How do I fix CVE-2012-4623?
To mitigate CVE-2012-4623, it is recommended to upgrade to a patched version of Cisco IOS or IOS XE that addresses the vulnerability.
What versions are affected by CVE-2012-4623?
CVE-2012-4623 impacts Cisco IOS versions 12.2 through 12.4 and 15.0 through 15.2, along with certain IOS XE versions.
Can CVE-2012-4623 be exploited remotely?
Yes, CVE-2012-4623 can be exploited remotely by sending malicious DHCPv6 packets.
What are the potential consequences of CVE-2012-4623?
Exploitation of CVE-2012-4623 can cause affected devices to reload, resulting in service disruption.