CVE-2015-0593
Cisco IOS 12.4(122)T and earlier - Denial of Service via Zone-Based Firewall Session Management
Title source: llmDescription
The Zone-Based Firewall implementation in Cisco IOS 12.4(122)T and earlier does not properly manage session-object structures, which allows remote attackers to cause a denial of service (device reload) via crafted network traffic, aka Bug ID CSCul65003.
References (4)
Core 4
Core References
Vendor Advisory x_refsource_confirm
http://tools.cisco.com/security/center/viewAlert.x?alertId=37417
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0593
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/100757
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/72549
Scores
EPSS
0.0155
EPSS Percentile
72.4%
Details
CWE
CWE-399
Status
published
Products (2)
cisco/ios
15.4\(1.12\)t
cisco/ios
15.4\(1.19\)t
Published
Feb 13, 2015
Tracked Since
Feb 18, 2026