First published: Wed Jan 23 2008(Updated: )
Unspecified vulnerability in Cisco PIX 500 Series Security Appliance and 5500 Series Adaptive Security Appliance (ASA) before 7.2(3)6 and 8.0(3), when the Time-to-Live (TTL) decrement feature is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted IP packet.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | <7.2\(3\)6 | |
Cisco Adaptive Security Appliance Software | =8.0\(3\) | |
Cisco PIX Firewall | <7.2\(3\)6 | |
Cisco PIX Firewall | =8.0\(3\) | |
Cisco Adaptive Security Appliance 5500 | ||
Cisco PIX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-0028 is classified as high due to its potential to cause denial of service.
To fix CVE-2008-0028, upgrade to Cisco Adaptive Security Appliance Software version 7.2(3)6 or 8.0(3) or later.
CVE-2008-0028 affects Cisco PIX 500 Series and 5500 Series Adaptive Security Appliance with specific software versions.
CVE-2008-0028 can be exploited by remote attackers sending crafted IP packets that cause device reload.
CVE-2008-0028 was disclosed on January 23, 2008.