Cisco Intrusion Prevention System (IPS) Software on IPS NME devices before 7.0(9)E4 allows remote attackers to cause a denial of service (device reload) via malformed IPv4 packets that trigger incorrect memory allocation, aka Bug ID CSCua61977.
2013-07-18T12:48:56.953
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.8 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | intrusion_prevention_system | ≤ 7.0\(8\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(1\)e3 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(2\)e3 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(2\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(3\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(4\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(5a\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(6\)e4 | Yes |
Application | cisco | intrusion_prevention_system | 7.0\(7\)e4 | Yes |
Hardware | cisco | ips_nme | - | Yes |