First published: Wed Apr 23 2014(Updated: )
The BGP Router process in Cisco IOS before 12.2(50)SY1 allows remote attackers to cause a denial of service (memory consumption) via vectors involving BGP path attributes, aka Bug ID CSCsw63003.
Credit: ykramarz@cisco.com psirt@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS | <=12.2\(50\)sy | |
<=12.2\(50\)sy |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5039 is classified as a high severity vulnerability due to its potential to cause a denial of service.
To fix CVE-2012-5039, upgrade to Cisco IOS version 12.2(50)SY1 or later.
CVE-2012-5039 affects Cisco IOS versions prior to 12.2(50)SY1.
CVE-2012-5039 allows remote attackers to exploit BGP path attributes for memory consumption, resulting in a denial of service.
There are no known workarounds for CVE-2012-5039; upgrading is the only effective solution.