CVE-2012-4659
Last modified
CVE-2012-4659 is a vulnerability of currently unknown severity. The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.30) and 8.3 before 8.3(2.34) allows remote attackers to cause a denial of service (device reload) via a crafted authentication response, aka Bug ID CSCtz04566.. EPSS estimates a 2.57% chance of exploitation in the next 30 days.
Description
The AAA functionality in the IPv4 SSL VPN implementations on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.2 before 8.2(5.30) and 8.3 before 8.3(2.34) allows remote attackers to cause a denial of service (device reload) via a crafted authentication response, aka Bug ID CSCtz04566.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Adaptive Security Appliance Software | 8.2 |
| Cisco | Adaptive Security Appliance Software | 8.2\(1\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(2\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(3\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(3.9\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(4\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(4.1\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(4.4\) |
| Cisco | Adaptive Security Appliance Software | 8.2\(5\) |
| Cisco | Adaptive Security Appliance Software | 8.3\(1\) |
| Cisco | Adaptive Security Appliance Software | 8.3\(2\) |
| Cisco | 5500 Series Adaptive Security Appliance | All versions |
| Cisco | Catalyst 6500 | All versions |
| Cisco | Catalyst 6503-E | All versions |
| Cisco | Catalyst 6504-E | All versions |
| Cisco | Catalyst 6506-E | All versions |
| Cisco | Catalyst 6509-E | All versions |
| Cisco | Catalyst 6509-Neb-A | All versions |
| Cisco | Catalyst 6509-V-E | All versions |
| Cisco | Catalyst 6513 | All versions |
| Cisco | Catalyst 6513-E | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-4659?
How severe is CVE-2012-4659?
How do I fix CVE-2012-4659?
Are you affected by CVE-2012-4659?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
