CVE-2012-5427: Input Validation
Published Apr 23, 2014
·Updated
Cisco IOS Unified Border Element (CUBE) in Cisco IOS before 15.3(2)T allows remote authenticated users to cause a denial of service (input queue wedge) via a crafted series of RTCP packets, aka Bug ID CSCuc42518.
Affected Software
2 affected components
Cisco IOS<=15.3\(2\)s
Cisco IOS=15.3
Event History
Apr 23, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·11:52 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2012-5427?
CVE-2012-5427 is classified as a denial of service vulnerability, which can impact system availability.
2
How do I fix CVE-2012-5427?
To fix CVE-2012-5427, upgrade Cisco IOS to version 15.3(2)T or later.
3
Who is affected by CVE-2012-5427?
CVE-2012-5427 affects Cisco IOS Unified Border Element (CUBE) versions before 15.3(2)T.
4
What can exploit CVE-2012-5427?
CVE-2012-5427 can be exploited by sending a crafted series of RTCP packets from authenticated remote users.
5
What type of impact does CVE-2012-5427 have?
CVE-2012-5427 can lead to an input queue wedge, resulting in a denial of service condition.