PT-2012-1822 · Cisco · Cisco Ios+1
Publicado
2012-05-03
·
Atualizado
2012-05-11
·
CVE-2011-4231
CVSS v2.0
6.3
Média
| Vetor | AV:N/AC:M/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco IOS versions 15.1 through 15.2
Cisco IOS XE versions 3.x
Description
The issue allows remote authenticated users to cause a denial of service, resulting in a segmentation fault and device crash, when the software is configured as an IPsec hub with X.509 certificates in use.
Recommendations
For Cisco IOS versions 15.1 through 15.2, consider disabling the use of X.509 certificates for IPsec until a fix is available.
For Cisco IOS XE versions 3.x, restrict access to the IPsec configuration to minimize the risk of exploitation.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Cisco Ios
Cisco Ios Xe