CVE-2012-2488: Cisco Asr 9000 RSP440 Router

High severity, CVSS 7.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Cisco IOS XR before 4.2.1 on ASR 9000 series devices and CRS series devices allows remote attackers to cause a denial of service (packet transmission outage) via a crafted packet, aka Bug IDs CSCty94537 and CSCtz62593.

Affected products

  • Cisco Asr 9000 RSP440 Router
  • Cisco Crs Performance Route Processor
  • Cisco IOS XR: up to and including 4.2.0; version 4.0.3 only; version 4.0.4 only; version 4.1 only; version 4.1.1 only; version 4.1.2 only; …

Published 2012-05-31. Last modified 2026-06-16.