Vulnerability Description
Cisco IOS 12.0, 15.0, and 15.1, when a Policy Feature Card 3C (PFC3C) is used, does not create a fragment entry during processing of an ICMPv6 ACL, which has unspecified impact and remote attack vectors, aka Bug ID CSCtj90091.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | 12.0 |
References
- http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/release/not
- http://www.securitytracker.com/id?1027005
- http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/release/not
- http://www.securitytracker.com/id?1027005
FAQ
What is CVE-2011-4012?
CVE-2011-4012 is a vulnerability with a CVSS score of 9.3 (HIGH). Cisco IOS 12.0, 15.0, and 15.1, when a Policy Feature Card 3C (PFC3C) is used, does not create a fragment entry during processing of an ICMPv6 ACL, which has unspecified impact and remote attack vecto...
How severe is CVE-2011-4012?
CVE-2011-4012 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-4012?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios.