CVE-2012-3915Improper Restriction of Operations within the Bounds of a Memory Buffer in Cisco IOS

Severity
5.0MEDIUMNVD
EPSS
0.5%
top 35.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 16
Latest updateMay 17

Description

The DMVPN tunnel implementation in Cisco IOS 15.2 allows remote attackers to cause a denial of service (persistent IKE state) via a large volume of hub-to-spoke traffic, aka Bug ID CSCtq39602.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDcisco/ios15.2

🔴Vulnerability Details

2
GHSA
GHSA-6x4j-7vp6-mhr5: The DMVPN tunnel implementation in Cisco IOS 152022-05-17
CVEList
CVE-2012-3915: The DMVPN tunnel implementation in Cisco IOS 152012-09-16
CVE-2012-3915 — Cisco IOS vulnerability | cvebase