CVE-2012-0382

7.5 HIGH
Published: March 29, 2012 Modified: April 29, 2026
View on NVD

Description

The Multicast Source Discovery Protocol (MSDP) implementation in Cisco IOS 12.0, 12.2 through 12.4, and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.1S and 3.1.xSG and 3.2.xSG before 3.2.2SG allows remote attackers to cause a denial of service (device reload) via encapsulated IGMP data in an MSDP packet, aka Bug ID CSCtr28857.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

CVSS v3.x Details

0.0 Low Medium High Critical 10.0
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/80693
Source: psirt@cisco.com
Broken Link
http://secunia.com/advisories/48630
Source: psirt@cisco.com
Not Applicable
http://secunia.com/advisories/48633
Source: psirt@cisco.com
Not Applicable
http://www.securityfocus.com/bid/52759
Source: psirt@cisco.com
Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1026868
Source: psirt@cisco.com
Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/74431
Source: psirt@cisco.com
Third Party Advisory VDB Entry
http://osvdb.org/80693
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://secunia.com/advisories/48630
Source: af854a3a-2127-422b-91ae-364da2661108
Not Applicable
http://secunia.com/advisories/48633
Source: af854a3a-2127-422b-91ae-364da2661108
Not Applicable
http://www.securityfocus.com/bid/52759
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
http://www.securitytracker.com/id?1026868
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/74431
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
7.5 / 10.0
EPSS (Exploit Probability)
4.5%
89th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

cisco