ID

VAR-201205-0412


CVE

CVE-2012-1324


TITLE

Cisco IOS of Zone-Based Firewall Service disruption in ( Device crash ) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2012-002231

DESCRIPTION

Race condition in the Zone-Based Firewall in Cisco IOS 15.1 and 15.2, when IPS policies are configured, allows remote attackers to cause a denial of service (device crash) by sending IPv6 packets, aka Bug ID CSCtk53534. ( Device crash ) There is a vulnerability that becomes a condition. The problem is Bug ID CSCtk53534 It is a problem.By a third party IPv6 Service interruption due to packet transmission ( Device crash ) There is a possibility of being put into a state. IOS is prone to a denial-of-service vulnerability. Cisco IOS is an operating system developed by Cisco in the United States for its network equipment

Trust: 1.98

sources: NVD: CVE-2012-1324 // JVNDB: JVNDB-2012-002231 // BID: 78255 // VULHUB: VHN-54605

AFFECTED PRODUCTS

vendor:ciscomodel:iosscope:eqversion:15.2

Trust: 2.7

vendor:ciscomodel:iosscope:eqversion:15.1

Trust: 2.7

sources: BID: 78255 // JVNDB: JVNDB-2012-002231 // CNNVD: CNNVD-201205-074 // NVD: CVE-2012-1324

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2012-1324
value: HIGH

Trust: 1.0

NVD: CVE-2012-1324
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201205-074
value: HIGH

Trust: 0.6

VULHUB: VHN-54605
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2012-1324
severity: HIGH
baseScore: 7.1
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-54605
severity: HIGH
baseScore: 7.1
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-54605 // JVNDB: JVNDB-2012-002231 // CNNVD: CNNVD-201205-074 // NVD: CVE-2012-1324

PROBLEMTYPE DATA

problemtype:CWE-362

Trust: 1.9

sources: VULHUB: VHN-54605 // JVNDB: JVNDB-2012-002231 // NVD: CVE-2012-1324

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201205-074

TYPE

competitive condition

Trust: 0.6

sources: CNNVD: CNNVD-201205-074

CONFIGURATIONS

sources: JVNDB: JVNDB-2012-002231

PATCH

title:Release 15.1(3)T Caveatsurl:http://www.cisco.com/en/US/docs/ios/15_1/release/notes/151-3TCAVS.html

Trust: 0.8

sources: JVNDB: JVNDB-2012-002231

EXTERNAL IDS

db:NVDid:CVE-2012-1324

Trust: 2.8

db:JVNDBid:JVNDB-2012-002231

Trust: 0.8

db:CNNVDid:CNNVD-201205-074

Trust: 0.7

db:BIDid:78255

Trust: 0.4

db:VULHUBid:VHN-54605

Trust: 0.1

sources: VULHUB: VHN-54605 // BID: 78255 // JVNDB: JVNDB-2012-002231 // CNNVD: CNNVD-201205-074 // NVD: CVE-2012-1324

REFERENCES

url:http://www.cisco.com/en/us/docs/ios/15_1/release/notes/151-3tcavs.html

Trust: 2.0

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/75414

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2012-1324

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2012-1324

Trust: 0.8

sources: VULHUB: VHN-54605 // BID: 78255 // JVNDB: JVNDB-2012-002231 // CNNVD: CNNVD-201205-074 // NVD: CVE-2012-1324

CREDITS

Unknown

Trust: 0.3

sources: BID: 78255

SOURCES

db:VULHUBid:VHN-54605
db:BIDid:78255
db:JVNDBid:JVNDB-2012-002231
db:CNNVDid:CNNVD-201205-074
db:NVDid:CVE-2012-1324

LAST UPDATE DATE

2025-04-11T23:04:13.851000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-54605date:2017-12-07T00:00:00
db:BIDid:78255date:2012-05-03T00:00:00
db:JVNDBid:JVNDB-2012-002231date:2012-05-08T00:00:00
db:CNNVDid:CNNVD-201205-074date:2012-05-04T00:00:00
db:NVDid:CVE-2012-1324date:2025-04-11T00:51:21.963

SOURCES RELEASE DATE

db:VULHUBid:VHN-54605date:2012-05-03T00:00:00
db:BIDid:78255date:2012-05-03T00:00:00
db:JVNDBid:JVNDB-2012-002231date:2012-05-08T00:00:00
db:CNNVDid:CNNVD-201205-074date:2012-05-04T00:00:00
db:NVDid:CVE-2012-1324date:2012-05-03T20:55:03.607