CVE-2012-5429: Medium severity cisco vpn client vulnerability
Published Jan 17, 2013
·Updated
The VPN driver in Cisco VPN Client on Windows does not properly interact with the kernel, which allows local users to cause a denial of service (kernel fault and system crash) via a crafted application, aka Bug ID CSCuc81669.
Affected Software
2 affected components
Cisco VPN Client
Microsoft Windows
Event History
Jan 17, 2013
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-5429?
CVE-2012-5429 has a severity rating that indicates it can lead to a denial of service due to kernel faults.
2
How do I fix CVE-2012-5429?
To fix CVE-2012-5429, update to the latest version of the Cisco VPN Client that addresses this vulnerability.
3
Who is affected by CVE-2012-5429?
Local users of Cisco VPN Client on Windows are affected by CVE-2012-5429.
4
What can attackers do with CVE-2012-5429?
Attackers can exploit CVE-2012-5429 to cause a denial of service, resulting in a system crash.
5
Is CVE-2012-5429 exploitable remotely?
CVE-2012-5429 is not exploitable remotely; it requires local access to the system.