First published: Fri Feb 16 2007(Updated: )
Cisco PIX 500 and ASA 5500 Series Security Appliances 7.2.2, when configured to inspect certain TCP-based protocols, allows remote attackers to cause a denial of service (device reboot) via malformed TCP packets.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASA 5500 CSC-SSM | =7.2\(2\) | |
Cisco PIX Firewall | =7.2\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0959 is classified as a high severity vulnerability due to its potential to cause a denial of service, leading to device reboot.
To fix CVE-2007-0959, upgrade your Cisco PIX or ASA 5500 device to a version higher than 7.2(2) that addresses this vulnerability.
CVE-2007-0959 affects TCP-based protocols when the Cisco firewalls are configured to inspect them.
Yes, CVE-2007-0959 can be exploited remotely by sending malformed TCP packets to the affected devices.
CVE-2007-0959 specifically affects Cisco PIX 500 and ASA 5500 Series Security Appliances running version 7.2(2).