CVE-2012-5017: Cisco Asr 1001

Medium severity, CVSS 6.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Cisco IOS before 15.1(1)SY1 allows remote authenticated users to cause a denial of service (device reload) by establishing a VPN session and then sending malformed IKEv2 packets, aka Bug ID CSCub39268.

Affected products

Published 2014-04-23. Last modified 2026-06-16.