First published: Tue Apr 16 2013(Updated: )
Race condition on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (CPU consumption or device reload) by establishing multiple connections, leading to improper handling of hash lookups for secondary flows, aka Bug IDs CSCue31622 and CSCuc71272.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance 5500 | =7.2-2 | |
Cisco Adaptive Security Appliance 5500 | ||
Cisco Adaptive Security Appliance 5500 | =7.2 | |
Cisco Adaptive Security Appliance Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5415 has a moderate severity level due to its potential for causing denial of service attacks.
To fix CVE-2012-5415, update your Cisco Adaptive Security Appliance to the patched version provided by Cisco.
CVE-2012-5415 affects several models of the Cisco Adaptive Security Appliance, specifically versions 7.2-2 and 7.2.
CVE-2012-5415 enables remote attackers to launch denial of service attacks by leveraging a race condition.
CVE-2012-5415 could lead to high CPU consumption or device reloads, significantly impacting network availability.