9
CVSSv2

CVE-2012-4661

Published: 29/10/2012 Updated: 15/08/2023
CVSS v2 Base Score: 9 | Impact Score: 9.5 | Exploitability Score: 8.6
VMScore: 801
Vector: AV:N/AC:M/Au:N/C:C/I:P/A:C

Vulnerability Summary

Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 prior to 8.3(2.34), 8.4 prior to 8.4(4.4), 8.5 prior to 8.5(1.13), and 8.6 prior to 8.6(1.3) and the Firewall Services Module (FWSM) 4.1 prior to 4.1(9) in Cisco Catalyst 6500 series switches and 7600 series routers might allow remote malicious users to execute arbitrary code via a crafted DCERPC packet, aka Bug IDs CSCtr21359 and CSCtr27522.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco adaptive_security_appliance_software 8.3\\(1\\)

cisco adaptive_security_appliance_software 8.3\\(2\\)

cisco adaptive_security_appliance_software 8.4

cisco adaptive_security_appliance_software 8.4\\(1\\)

cisco adaptive_security_appliance_software 8.4\\(1.11\\)

cisco adaptive_security_appliance_software 8.4\\(2\\)

cisco adaptive_security_appliance_software 8.4\\(2.11\\)

cisco adaptive_security_appliance_software 8.5

cisco adaptive_security_appliance_software 8.5\\(1\\)

cisco adaptive_security_appliance_software 8.5\\(1.4\\)

cisco adaptive_security_appliance_software 8.6

cisco adaptive_security_appliance_software 8.6\\(1\\)

cisco 5500_series_adaptive_security_appliance

cisco 7600_router

cisco catalyst_6500

cisco catalyst_6503-e -

cisco catalyst_6504-e -

cisco catalyst_6506-e -

cisco catalyst_6509-e -

cisco catalyst_6509-neb-a -

cisco catalyst_6509-v-e -

cisco catalyst_6513 -

cisco catalyst_6513-e -

Vendor Advisories

The Cisco Firewall Services Module (FWSM) for Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers is affected by the following vulnerabilities: DCERPC Inspection Buffer Overflow Vulnerability DCERPC Inspection Denial Of Service Vulnerabilities These vulnerabilities are not interdependent; a release that is affected by ...
Cisco ASA 5500 Series Adaptive Security Appliances (ASA) and Cisco Catalyst 6500 Series ASA Services Module (ASASM) may be affected by the following vulnerabilities: DHCP Memory Allocation Denial of Service Vulnerability SSL VPN Authentication Denial of Service Vulnerability SIP Inspection Media Update Denial of Service Vulnerability ...