CVE-2012-1311
 
Severity Score
7.8
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The RSVP feature in Cisco IOS 15.0 and 15.1 and IOS XE 3.2.xS through 3.4.xS before 3.4.2S, when a VRF interface is configured, allows remote attackers to cause a denial of service (interface queue wedge and service outage) via crafted RSVP packets, aka Bug ID CSCts80643.
La funcionalidad de gestión de tráfico RSVP en Cisco IOS v15.0 y v15.1 y en IOS XE v3.2.xS a v3.4.xS antes de v3.4.2S, cuando se configura una interfaz VRF, permite a atacantes remotos causar una denegación de servicio (error de procesamiento en la cola del interfaz e interrupción del servicio) a través de paquetes RSVP modificados a mano. Se trata de un problema también conocido como Bug ID CSCts80643.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2012-02-27 CVE Reserved
- 2012-03-29 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://osvdb.org/80692 | Vdb Entry | |
http://secunia.com/advisories/48611 | Third Party Advisory | |
http://secunia.com/advisories/48621 | Third Party Advisory | |
http://www.securityfocus.com/bid/52754 | Vdb Entry | |
http://www.securitytracker.com/id?1026865 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120328-rsvp | 2017-12-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.0 Search vendor "Cisco" for product "Ios" and version "15.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Search vendor "Cisco" for product "Ios" | 15.1 Search vendor "Cisco" for product "Ios" and version "15.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.2.0s Search vendor "Cisco" for product "Ios Xe" and version "3.2.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.2.1s Search vendor "Cisco" for product "Ios Xe" and version "3.2.1s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.2.2s Search vendor "Cisco" for product "Ios Xe" and version "3.2.2s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.3.0s Search vendor "Cisco" for product "Ios Xe" and version "3.3.0s" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ios Xe Search vendor "Cisco" for product "Ios Xe" | 3.4.0s Search vendor "Cisco" for product "Ios Xe" and version "3.4.0s" | - |
Affected
|