Vulnslist

find the latest Cisco vulnerabilities

Cisco Catalyst 4500E Series Switch with Cisco Catalyst Supervisor Engine 7L-E Denial of Service Vulnerability

cisco-sa-20120926-ecc · High · Published · Updated

The Catalyst 4500E series switch with Supervisor Engine 7L-E contains a denial of service (DoS) vulnerability when processing specially crafted packets that can cause a reload of the device. Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120926-ecc Note: The September 26, 2012, Cisco IOS Software Security Advisory bundled publication includes nine Cisco Security Advisories. Eight of the advisories address vulnerabilities in Cisco IOS Software, and one advisory addresses a vulnerability in Cisco Unified Communications Manager. Each Cisco IOS Software Security Advisory lists the Cisco IOS Software releases that correct the vulnerability or vulnerabilities detailed in the advisory as well as the Cisco IOS Software releases that correct all Cisco IOS Software vulnerabilities in the September 2012 bundled publication.  Individual publication links are in "Cisco Event Response: Semi-Annual Cisco IOS Software Security Advisory Bundled Publication" at the following link: http://www.cisco.com/web/about/security/intelligence/Cisco_ERP_sep12.html

Workarounds

The are no workarounds for this vulnerability. The use of port access control lists (PACL) and VLAN access control lists (VACL) does not mitigate this vulnerability.

CVEsCVE-2012-4622
Cisco Bug IDsCSCty88456
CVSS ScoreBase 7.8
Base 7.8 AV:N/AC:L/Au:N/C:N/I:N/A:C/E:F/RL:OF/RC:C
Product Names From Source
Cisco Catalyst 4500E Supervisor Engine 7L-E software

Related Products

Product CVE Evidence
Cisco RV Series Routers CVE-2012-4622 Cisco OpenVuln
Cisco Nexus Dashboard CVE-2012-4622 Cisco OpenVuln
Cisco IOS Software CVE-2012-4622 Cisco OpenVuln
Cisco Catalyst PON Series Switches CVE-2012-4622 Cisco OpenVuln
Cisco Catalyst 4500 Series Switches CVE-2012-4622 Cisco OpenVuln
Cisco Unified Communications Manager CVE-2012-4622 Cisco OpenVuln
Cisco IOS CVE-2012-4622 Cisco OpenVuln
Cisco Catalyst 4500E Supervisor Engine 7L-E software CVE-2012-4622 Cisco OpenVuln