CVE-2017-12240
The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a vulnerability that could allow an unauthenticated, remote attacker to execute arbitrary code and gain full control of an affected system. The attacker could also cause an affected system to reload, resulting in a denial of service (DoS) condition. The vulnerability is due to a buffer overflow condition in the DHCP relay subsystem of the affected software. An attacker could exploit this vulnerability by sending a crafted DHCP Version 4 (DHCPv4) packet to an affected system. A successful exploit could allow the attacker to execute arbitrary code and gain full control of the affected system or cause the affected system to reload, resulting in a DoS condition. Cisco Bug IDs: CSCsm45390, CSCuw77959.
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| cisco | ios | * ≥ 12.2 |
GitHub Security Advisory GHSA-q8rh-r33q-hvj2
The DHCP relay subsystem of Cisco IOS 12.2 through 15.6 and Cisco IOS XE Software contains a...
References (11)
- http://www.securityfocus.com/bid/101034 Broken Link, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039445 Broken Link, Third Party Advisory, VDB Entry
- https://quickview.cloudapps.cisco.com/quickview/bug/CSCsm45390 Vendor Advisory
- https://quickview.cloudapps.cisco.com/quickview/bug/CSCuw77959 Vendor Advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-dhcp Vendor Advisory
- http://www.securityfocus.com/bid/101034 Broken Link, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039445 Broken Link, Third Party Advisory, VDB Entry
- https://quickview.cloudapps.cisco.com/quickview/bug/CSCsm45390 Vendor Advisory
- https://quickview.cloudapps.cisco.com/quickview/bug/CSCuw77959 Vendor Advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170927-dhcp Vendor Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-12240 US Government Resource
Risk Scores
Top 4% most likely to be exploited
CISA Known Exploited
Apply updates per vendor instructions.