imPC@ndo IT

Tracker / CVE-2012-4661

CVE-2012-4661

High 9.0

Stack-based buffer overflow in the DCERPC inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with software 8.3 before 8.3(2.34), 8.4 before 8.4(4.4), 8.5 before 8.5(1.13), and 8.6 before 8.6(1.3) and the Firewall Services Module (FWSM) 4.1 before 4.1(9) in Cisco Catalyst 6500 series switches and 7600 series routers might allow remote attackers to execute arbitrary code via a crafted DCERPC packet, aka Bug IDs CSCtr21359 and CSCtr27522.

Affected products and versions

cisco 5500_series_adaptive_security_appliance
cisco 7600_router
cisco adaptive_security_appliance_software
cisco catalyst_6500
cisco catalyst_6503-e
cisco catalyst_6504-e
cisco catalyst_6506-e
cisco catalyst_6509-e
cisco catalyst_6509-neb-a
cisco catalyst_6509-v-e
cisco catalyst_6513
cisco catalyst_6513-e

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References