CVE-2012-4643: High severity cisco adaptive security appliance software vulnerability
The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 before 7.2(5.8), 7.1 before 7.2(5.8), 7.2 before 7.2(5.8), 8.0 before 8.0(5.28), 8.1 before 8.1(2.56), 8.2 before 8.2(5.27), 8.3 before 8.3(2.31), 8.4 before 8.4(3.10), 8.5 before 8.5(1.9), and 8.6 before 8.6(1.5) does not properly allocate memory for DHCP packets, which allows remote attackers to cause a denial of service (device reload) via a series of crafted IPv4 packets, aka Bug ID CSCtw84068.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4643?
CVE-2012-4643 is classified as a high severity vulnerability due to potential remote code execution.
Who is affected by CVE-2012-4643?
CVE-2012-4643 affects Cisco Adaptive Security Appliances (ASA) 5500 series and Catalyst 6500 series devices running specific versions of software.
How can I fix CVE-2012-4643?
To mitigate CVE-2012-4643, upgrade the affected devices to the recommended software versions provided by Cisco.
What types of attacks can CVE-2012-4643 facilitate?
CVE-2012-4643 can be exploited to allow unauthorized remote code execution on vulnerable devices.
What versions of Cisco software are vulnerable to CVE-2012-4643?
Versions of Cisco Adaptive Security Appliance Software prior to 7.2(5.8), 8.0(5.28), and others listed in the advisory are vulnerable to CVE-2012-4643.