CVE Vulnerabilities

CVE-2010-2836

Published: Sep 23, 2010 | Modified: Sep 24, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

Memory leak in the SSL VPN feature in Cisco IOS 12.4, 15.0, and 15.1, when HTTP port redirection is enabled, allows remote attackers to cause a denial of service (memory consumption) by improperly disconnecting SSL sessions, leading to connections that remain in the CLOSE-WAIT state, aka Bug ID CSCtg21685.

Affected Software 

Name Vendor Start Version End Version
Ios Cisco 12.4 (including) 12.4 (including)
Ios Cisco 12.4gc (including) 12.4gc (including)
Ios Cisco 12.4mda (including) 12.4mda (including)
Ios Cisco 12.4mr (including) 12.4mr (including)
Ios Cisco 12.4mra (including) 12.4mra (including)
Ios Cisco 12.4sw (including) 12.4sw (including)
Ios Cisco 12.4xa (including) 12.4xa (including)
Ios Cisco 12.4xb (including) 12.4xb (including)
Ios Cisco 12.4xc (including) 12.4xc (including)
Ios Cisco 12.4xd (including) 12.4xd (including)
Ios Cisco 12.4xe (including) 12.4xe (including)
Ios Cisco 12.4xf (including) 12.4xf (including)
Ios Cisco 12.4xg (including) 12.4xg (including)
Ios Cisco 12.4xj (including) 12.4xj (including)
Ios Cisco 12.4xk (including) 12.4xk (including)
Ios Cisco 12.4xl (including) 12.4xl (including)
Ios Cisco 12.4xm (including) 12.4xm (including)
Ios Cisco 12.4xn (including) 12.4xn (including)
Ios Cisco 12.4xp (including) 12.4xp (including)
Ios Cisco 12.4xt (including) 12.4xt (including)
Ios Cisco 12.4xv (including) 12.4xv (including)
Ios Cisco 12.4xw (including) 12.4xw (including)
Ios Cisco 12.4xy (including) 12.4xy (including)
Ios Cisco 12.4xz (including) 12.4xz (including)
Ios Cisco 12.4ya (including) 12.4ya (including)
Ios Cisco 12.4yb (including) 12.4yb (including)
Ios Cisco 12.4yd (including) 12.4yd (including)
Ios Cisco 15.0m (including) 15.0m (including)
Ios Cisco 15.0xa (including) 15.0xa (including)
Ios Cisco 15.1(1)xb1 (including) 15.1(1)xb1 (including)
Ios Cisco 15.1t (including) 15.1t (including)

References