The IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.2.xSG before 3.2.2SG allows remote attackers to cause a denial of service (device reload) by sending IKE UDP packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCts38429.
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
No CVSS v3.0
Access Vector Network
Access Complexity Low
Authentication None
Confidentiality Impact None
Integrity Impact None
Availability Impact Complete
AV:N/AC:L/Au:N/C:N/I:N/A:C
Vendors | Products |
---|---|
Cisco |
|
Configuration 1 [-]
|
Configuration 2 [-]
|
Configuration 3 [-]
|
Configuration 4 [-]
|
Configuration 5 [-]
|
References
Link | Resource |
---|---|
http://osvdb.org/80700 | Broken Link |
http://secunia.com/advisories/48605 | Not Applicable |
http://secunia.com/advisories/48607 | Not Applicable |
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120328-ike | Vendor Advisory |
http://www.securityfocus.com/bid/52757 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id?1026863 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/74427 | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2012-03-29T10:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-01-04T00:00:00
Link: CVE-2012-0381
JSON object: View
NVD Information
Status : Analyzed
Published: 2012-03-29T11:01:16.073
Modified: 2020-07-29T16:00:55.093
Link: CVE-2012-0381
JSON object: View
Redhat Information
No data.
CWE