CVE-2012-3899: Cisco Intrusion Prevention System

Medium severity, CVSS 5.0. EPSS: 1.2% chance of exploitation in the next 30 days.

sensorApp on Cisco IPS 4200 series sensors 6.0, 6.2, and 7.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and process crash, and traffic-inspection outage) via network traffic, aka Bug ID CSCtn23051.

Affected products

  • Cisco Intrusion Prevention System: version 6.0 only; version 6.2 only; version 7.0 only
  • Cisco Ips 4240
  • Cisco Ips 4250 Sx
  • Cisco Ips 4255
  • Cisco Ips 4260
  • Cisco Ips 4270-20

Published 2012-09-16. Last modified 2026-06-16.