CVE-2012-4660: Buffer Overflow
The SIP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.17), 8.3 before 8.3(2.28), 8.4 before 8.4(2.13), 8.5 before 8.5(1.4), and 8.6 before 8.6(1.5) allows remote attackers to cause a denial of service (device reload) via a crafted SIP media-update packet, aka Bug ID CSCtr63728.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4660?
CVE-2012-4660 has a high severity rating, which indicates it may allow unauthorized access or other significant impacts to affected systems.
How do I fix CVE-2012-4660?
To fix CVE-2012-4660, upgrade your Cisco ASA 5500 series devices and ASASM to the recommended software versions as specified in the Cisco security advisory.
Which devices are affected by CVE-2012-4660?
CVE-2012-4660 affects the Cisco Adaptive Security Appliances 5500 series and the ASA Services Module in Cisco Catalyst 6500 series devices.
What versions of Cisco software are vulnerable to CVE-2012-4660?
Versions of Cisco Adaptive Security Appliance software prior to 8.2(5.17), 8.3(2.28), 8.4(2.13), 8.5(1.4), and 8.6(1.5) are vulnerable to CVE-2012-4660.
What type of vulnerability is CVE-2012-4660?
CVE-2012-4660 is classified as a vulnerability in the SIP inspection engine, allowing for potential unauthorized access.