CVE-2011-3280

Description

Memory leak in the NAT implementation in Cisco IOS 12.1 through 12.4 and 15.0 through 15.1, and IOS XE 3.1.xSG, allows remote attackers to cause a denial of service (memory consumption or device reload) by sending crafted SIP packets to UDP port 5060, aka Bug ID CSCtj04672.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.459

Associated Vulnerability

VulnerabilityOS Platform
Cisco IOS Software Network Address Translation Vulnerabilities For NCM
Cisco IOS Software Network Address Translation Vulnerabilities For Cisco 3800 Series Integrated Services RoutersNCM
CVE-2011-3280NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1706026Security Update for CAF-1.2.0.0
PATCH-1705351Security Update for Cisco 3800 Series Integrated Services Routers 15.2(1.1)T

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234