Vulnerability Name: CVE-2012-4643 (CCN-79176) Assigned: 2012-10-10 Published: 2012-10-10 Updated: 2013-03-02 Summary: The DHCP server on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 7.0 before 7.2(5.8), 7.1 before 7.2(5.8), 7.2 before 7.2(5.8), 8.0 before 8.0(5.28), 8.1 before 8.1(2.56), 8.2 before 8.2(5.27), 8.3 before 8.3(2.31), 8.4 before 8.4(3.10), 8.5 before 8.5(1.9), and 8.6 before 8.6(1.5) does not properly allocate memory for DHCP packets, which allows remote attackers to cause a denial of service (device reload) via a series of crafted IPv4 packets, aka Bug ID CSCtw84068. CVSS v3 Severity: 7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): NoneScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): High
CVSS v2 Severity: 7.1 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C )5.3 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAuthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
7.1 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C )5.3 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Complete
Vulnerability Type: CWE-399 Vulnerability Consequences: Denial of Service References: Source: MITRE Type: CNACVE-2012-4643 Source: OSVDB Type: UNKNOWN86145 Source: CCN Type: SA50871Cisco ASA Products Multiple Vulnerabilities Source: CCN Type: cisco-sa-20121010-asaMultiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500 Series ASA Services Module Source: CISCO Type: Vendor Advisory20121010 Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500 Series ASA Services Module Source: CCN Type: OSVDB ID: 86145Cisco Multiple Product DHCP Memory Allocation DHCP Request Parsing Remote DoS Source: BID Type: UNKNOWN55861 Source: CCN Type: BID-55861Cisco ASA 5500 Series and Cisco Catalyst 6500 Series DHCP Denial of Service Vulnerability Source: XF Type: UNKNOWNCisco-asasm-dhcp-dos(79176) Vulnerable Configuration: Configuration 1 :cpe:/a:cisco:adaptive_security_appliance_software:7.0:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(0):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.0(5.2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(2.5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(2.27):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(2.48):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(2.49):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.1(5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(1.22):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.7):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.8):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.10):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.14):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.15):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.16):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.17):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.18):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.19):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(2.48):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(3):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:7.2(5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.0:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.0(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.0(3):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.0(4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.0(5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.1:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(3):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(3.9):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(4.1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(4.4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.2(5):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.3(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.3(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.4:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.4(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.4(1.11):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.4(2):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.4(2.11):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.5:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.5(1):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.5(1.4):*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.6:*:*:*:*:*:*:* OR cpe:/a:cisco:adaptive_security_appliance_software:8.6(1):*:*:*:*:*:*:* AND cpe:/h:cisco:5500_series_adaptive_security_appliance:*:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6500:*:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6503-e:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6504-e:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6506-e:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6509-e:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6509-neb-a:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6509-v-e:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6513:-:*:*:*:*:*:*:* OR cpe:/h:cisco:catalyst_6513-e:-:*:*:*:*:*:*:* Denotes that component is vulnerable BACK
cisco adaptive security appliance software 7.0
cisco adaptive security appliance software 7.0(0)
cisco adaptive security appliance software 7.0(1)
cisco adaptive security appliance software 7.0(2)
cisco adaptive security appliance software 7.0(4)
cisco adaptive security appliance software 7.0(5)
cisco adaptive security appliance software 7.0(5.2)
cisco adaptive security appliance software 7.1
cisco adaptive security appliance software 7.1(2)
cisco adaptive security appliance software 7.1(2.5)
cisco adaptive security appliance software 7.1(2.27)
cisco adaptive security appliance software 7.1(2.48)
cisco adaptive security appliance software 7.1(2.49)
cisco adaptive security appliance software 7.1(5)
cisco adaptive security appliance software 7.2
cisco adaptive security appliance software 7.2(1)
cisco adaptive security appliance software 7.2(1.22)
cisco adaptive security appliance software 7.2(2)
cisco adaptive security appliance software 7.2(2.5)
cisco adaptive security appliance software 7.2(2.7)
cisco adaptive security appliance software 7.2(2.8)
cisco adaptive security appliance software 7.2(2.10)
cisco adaptive security appliance software 7.2(2.14)
cisco adaptive security appliance software 7.2(2.15)
cisco adaptive security appliance software 7.2(2.16)
cisco adaptive security appliance software 7.2(2.17)
cisco adaptive security appliance software 7.2(2.18)
cisco adaptive security appliance software 7.2(2.19)
cisco adaptive security appliance software 7.2(2.48)
cisco adaptive security appliance software 7.2(3)
cisco adaptive security appliance software 7.2(4)
cisco adaptive security appliance software 7.2(5)
cisco adaptive security appliance software 8.0
cisco adaptive security appliance software 8.0(2)
cisco adaptive security appliance software 8.0(3)
cisco adaptive security appliance software 8.0(4)
cisco adaptive security appliance software 8.0(5)
cisco adaptive security appliance software 8.1
cisco adaptive security appliance software 8.2
cisco adaptive security appliance software 8.2(1)
cisco adaptive security appliance software 8.2(2)
cisco adaptive security appliance software 8.2(3)
cisco adaptive security appliance software 8.2(3.9)
cisco adaptive security appliance software 8.2(4)
cisco adaptive security appliance software 8.2(4.1)
cisco adaptive security appliance software 8.2(4.4)
cisco adaptive security appliance software 8.2(5)
cisco adaptive security appliance software 8.3(1)
cisco adaptive security appliance software 8.3(2)
cisco adaptive security appliance software 8.4
cisco adaptive security appliance software 8.4(1)
cisco adaptive security appliance software 8.4(1.11)
cisco adaptive security appliance software 8.4(2)
cisco adaptive security appliance software 8.4(2.11)
cisco adaptive security appliance software 8.5
cisco adaptive security appliance software 8.5(1)
cisco adaptive security appliance software 8.5(1.4)
cisco adaptive security appliance software 8.6
cisco adaptive security appliance software 8.6(1)
cisco 5500 series adaptive security appliance *
cisco catalyst 6500 *
cisco catalyst 6503-e -
cisco catalyst 6504-e -
cisco catalyst 6506-e -
cisco catalyst 6509-e -
cisco catalyst 6509-neb-a -
cisco catalyst 6509-v-e -
cisco catalyst 6513 -
cisco catalyst 6513-e -