HIGH · 7.8

CVE-2012-0356

Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 through 7.2 before 7.2(5.7), 8.0 before 8.0(5...

Vulnerability Description

Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 through 7.2 before 7.2(5.7), 8.0 before 8.0(5.27), 8.1 before 8.1(2.53), 8.2 before 8.2(5.8), 8.3 before 8.3(2.25), 8.4 before 8.4(2.5), and 8.5 before 8.5(1.2) and the Firewall Services Module (FWSM) 3.1 and 3.2 before 3.2(23) and 4.0 and 4.1 before 4.1(8) in Cisco Catalyst 6500 series devices, when multicast routing is enabled, allow remote attackers to cause a denial of service (device reload) via a crafted IPv4 PIM message, aka Bug IDs CSCtr47517 and CSCtu97367.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoFirewall Services Module Software3.1
CiscoAdaptive Security Appliance Software7.0
Cisco5500 Series Adaptive Security ApplianceAll versions
CiscoCatalyst 6500All versions
CiscoCatalyst 6503-E-
CiscoCatalyst 6504-E-
CiscoCatalyst 6506-E-
CiscoCatalyst 6509-E-
CiscoCatalyst 6509-Neb-A-
CiscoCatalyst 6509-V-E-
CiscoCatalyst 6513-
CiscoCatalyst 6513-E-
CiscoFirewall Services ModuleAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2012-0356?

CVE-2012-0356 is a vulnerability with a CVSS score of 7.8 (HIGH). Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 through 7.2 before 7.2(5.7), 8.0 before 8.0(5...

How severe is CVE-2012-0356?

CVE-2012-0356 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-0356?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Firewall Services Module Software, Cisco Adaptive Security Appliance Software, Cisco 5500 Series Adaptive Security Appliance, Cisco Catalyst 6500, Cisco Catalyst 6503-E.