VYPR
Unrated severityNVD Advisory· Published Mar 27, 2009· Updated Jun 16, 2026

CVE-2009-0635

CVE-2009-0635

Description

Memory leak in the Cisco Tunneling Control Protocol (cTCP) encapsulation feature in Cisco IOS 12.4, when an Easy VPN (aka EZVPN) server is enabled, allows remote attackers to cause a denial of service (memory consumption and device crash) via a sequence of TCP packets.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Cisco Systems, Inc./Cisco iOSllm-fuzzy4 versions
    12.4+ 3 more
    • (no CPE)range: 12.4
    • cpe:2.3:o:cisco:ios:12.4t:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios:12.4xz:*:*:*:*:*:*:*
    • cpe:2.3:o:cisco:ios:12.4ya:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.