First published: Tue Jun 29 2010(Updated: )
The IPv6 implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) exposes IP services on the "far side of the box," which might allow remote attackers to bypass intended access restrictions via IPv6 packets, aka Bug ID CSCso58622.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASA 5580 | <=8.1\(1\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4913 is considered a high severity vulnerability as it allows remote attackers to bypass access restrictions.
To fix CVE-2009-4913, upgrade the Cisco ASA 5580 devices to software version 8.1(2) or later.
CVE-2009-4913 specifically affects Cisco Adaptive Security Appliances (ASA) 5580 series devices running software versions before 8.1(2).
CVE-2009-4913 can be exploited by sending specially crafted IPv6 packets to bypass intended access controls.
There is no official workaround for CVE-2009-4913, so upgrading to a patched version is the recommended action.