Vulnerability Description
Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via tunneled (1) GRE/IP, (2) IPIP, or (3) IPv6 in IPv4 packets, aka Bug ID CSCts66808.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | 10008 Router | All versions |
| Cisco | Ios | 12.2 |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20Vendor Advisory
- http://www.securityfocus.com/bid/55696
- http://www.securitytracker.com/id?1027578
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78883
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20Vendor Advisory
- http://www.securityfocus.com/bid/55696
- http://www.securitytracker.com/id?1027578
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78883
FAQ
What is CVE-2012-4620?
CVE-2012-4620 is a vulnerability with a CVSS score of 7.8 (HIGH). Cisco IOS 12.2 and 15.0 through 15.2 on Cisco 10000 series routers, when a tunnel interface exists, allows remote attackers to cause a denial of service (interface queue wedge) via tunneled (1) GRE/IP...
How severe is CVE-2012-4620?
CVE-2012-4620 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-4620?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco 10008 Router, Cisco Ios.