SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2012-5415

Race condition on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (CPU consumption or device reload) by establishing multiple connections, leading to improper handling of hash lookups for secondary…

MEDIUM 5.4EPSS 0.80%

Does this matter?

Lower severity and a low EPSS score (0.80%). Track it; it rarely justifies an emergency change on its own.

Description

Race condition on Cisco Adaptive Security Appliances (ASA) devices allows remote attackers to cause a denial of service (CPU consumption or device reload) by establishing multiple connections, leading to improper handling of hash lookups for secondary flows, aka Bug IDs CSCue31622 and CSCuc71272.

CVSS 2.0
5.4 MEDIUMAV:N/AC:H/Au:N/C:N/I:N/A:C
EPSS
0.80% probability · 55th percentile
CISA KEV
Not listed
Weakness
CWE-362
Affected
cisco/5500 adaptive security appliance · cisco/5500 series adaptive security appliance · cisco/adaptive security appliance
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.