Vulnerability Description
The ACL implementation in Cisco IOS before 15.1(1)SY on Catalyst 6500 and 7600 devices allows local users to cause a denial of service (device reload) via a "no object-group" command followed by an object-group command, aka Bug ID CSCts16133.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Ios | <= 15.1 |
| Cisco | Catalyst 6500 | All versions |
| Cisco | Catalyst 7600 | All versions |
Related Weaknesses (CWE)
References
- http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/15-1SY/releas
- http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst6500/ios/15-1SY/releas
FAQ
What is CVE-2012-5037?
CVE-2012-5037 is a vulnerability with a CVSS score of 4.6 (MEDIUM). The ACL implementation in Cisco IOS before 15.1(1)SY on Catalyst 6500 and 7600 devices allows local users to cause a denial of service (device reload) via a "no object-group" command followed by an ob...
How severe is CVE-2012-5037?
CVE-2012-5037 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-5037?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Ios, Cisco Catalyst 6500, Cisco Catalyst 7600.