CVE-2012-6026: Buffer Overflow
The HTTP Profiler on the Cisco Aironet Access Point with software 15.2 and earlier does not properly manage buffers, which allows remote attackers to cause a denial of service (device reload) via crafted HTTP requests, aka Bug ID CSCuc62460.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-6026?
CVE-2012-6026 has a severity rating that indicates it can lead to a denial of service on affected Cisco Aironet Access Points.
How do I fix CVE-2012-6026?
To fix CVE-2012-6026, upgrade the Cisco Aironet Access Point software to a version later than 15.2.
What devices are affected by CVE-2012-6026?
CVE-2012-6026 affects Cisco Aironet Access Points running software versions 7.3, 7.4, 12.4, and 15.2.
What type of attack does CVE-2012-6026 allow?
CVE-2012-6026 allows remote attackers to launch a denial of service attack causing device reloads through crafted HTTP requests.
Is there a workaround for CVE-2012-6026?
There is no documented workaround for CVE-2012-6026; the recommended mitigation is to update the software.