CVE-2012-4651: Medium severity Cisco IOS vulnerability
Published Apr 23, 2014
·Updated
Cisco IOS before 15.3(2)T, when scansafe is enabled, allows remote attackers to cause a denial of service (latency) via SYN packets that are not accompanied by SYN-ACK packets from the Scan Safe Tower, aka Bug ID CSCub85451.
Affected Software
7 affected components
Cisco IOS<=15.3\(3\)m2
Cisco IOS=15.3
Cisco IOS=15.3\(2\)s
Cisco IOS=15.3\(3\)m
Cisco IOS=15.3\(3\)m1
Cisco IOS=15.3\(3\)s
Cisco IOS=15.3s
Event History
Apr 23, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·11:52 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2012-4651?
CVE-2012-4651 has a high severity level as it allows remote attackers to cause denial of service conditions.
2
How do I fix CVE-2012-4651?
To fix CVE-2012-4651, upgrade your Cisco IOS to version 15.3(2)T or later.
3
What devices are affected by CVE-2012-4651?
CVE-2012-4651 affects Cisco IOS versions prior to 15.3(2)T when scansafe is enabled.
4
What type of attack does CVE-2012-4651 involve?
CVE-2012-4651 involves a denial of service attack that exploits SYN packets without corresponding SYN-ACK responses.
5
Is there a workaround for CVE-2012-4651?
There are no known workarounds for CVE-2012-4651, so upgrading to a patched version is recommended.