First published: Tue Jun 29 2010(Updated: )
Memory leak on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to cause a denial of service (memory consumption) via Subject Alternative Name fields in an X.509 certificate, aka Bug ID CSCsq17879.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASA 5580 | <=8.1\(1\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4914 has a high severity rating as it can lead to a denial of service due to excessive memory consumption.
To resolve CVE-2009-4914, upgrade your Cisco Adaptive Security Appliance software to version 8.1(2) or later.
CVE-2009-4914 specifically affects Cisco ASA 5580 series devices running software versions before 8.1(2).
CVE-2009-4914 enables remote attackers to exploit a memory leak, leading to a denial of service condition.
CVE-2009-4914 is caused by improper handling of Subject Alternative Name fields in X.509 certificates.