Denial of Service Vulnerability in Cisco ASA 5500 Series Devices with SIP Inspection Enabled

Denial of Service Vulnerability in Cisco ASA 5500 Series Devices with SIP Inspection Enabled

CVE-2012-2472 · HIGH Severity

AV:N/AC:L/AU:N/C:N/I:N/A:C

Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 and 8.4, when SIP inspection is enabled, create many identical pre-allocated secondary pinholes, which might allow remote attackers to cause a denial of service (CPU consumption) via crafted SIP traffic, aka Bug ID CSCtz63143.

Learn more about our Web Application Penetration Testing UK.