CVE-2009-4913: Medium severity cisco asa 5580 firmware vulnerability
The IPv6 implementation on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) exposes IP services on the "far side of the box," which might allow remote attackers to bypass intended access restrictions via IPv6 packets, aka Bug ID CSCso58622.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2009-4913?
CVE-2009-4913 is considered a high severity vulnerability as it allows remote attackers to bypass access restrictions.
How do I fix CVE-2009-4913?
To fix CVE-2009-4913, upgrade the Cisco ASA 5580 devices to software version 8.1(2) or later.
What devices are affected by CVE-2009-4913?
CVE-2009-4913 specifically affects Cisco Adaptive Security Appliances (ASA) 5580 series devices running software versions before 8.1(2).
What type of attacks can exploit CVE-2009-4913?
CVE-2009-4913 can be exploited by sending specially crafted IPv6 packets to bypass intended access controls.
Is there a workaround for CVE-2009-4913?
There is no official workaround for CVE-2009-4913, so upgrading to a patched version is the recommended action.