7.8
CVSSv2

CVE-2013-1145

Published: 28/03/2013 Updated: 02/04/2013
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Memory leak in Cisco IOS 12.2, 12.4, 15.0, and 15.1, when Zone-Based Policy Firewall SIP application layer gateway inspection is enabled, allows remote malicious users to cause a denial of service (memory consumption or device reload) via malformed SIP messages, aka Bug ID CSCtl99174.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 12.4

cisco ios 15.1

cisco ios 12.2

cisco ios 15.0

Vendor Advisories

Cisco IOS Software contains a memory leak vulnerability that could be triggered through the processing of malformed Session Initiation Protocol (SIP) messages Exploitation of this vulnerability could cause an interruption of services Only devices that are configured for SIP inspection are affected by this vulnerability Cisco has released softwa ...