First published: Fri Aug 06 2010(Updated: )
Unspecified vulnerability in the IKE implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 before 7.0(8.11), 7.1 and 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8.1 before 8.1(2.44), 8.2 before 8.2(2.10), and 8.3 before 8.3(1.1) and Cisco PIX Security Appliances 500 series devices allows remote attackers to cause a denial of service (device reload) via a crafted IKE message, aka Bug ID CSCte46507.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | =7.0.1 | |
Cisco Adaptive Security Appliance Software | =7.0.2 | |
Cisco Adaptive Security Appliance Software | =7.0.3 | |
Cisco Adaptive Security Appliance Software | =7.0.4 | |
Cisco Adaptive Security Appliance Software | =7.0.5 | |
Cisco Adaptive Security Appliance Software | =7.0.6 | |
Cisco Adaptive Security Appliance Software | =7.0.7 | |
Cisco Adaptive Security Appliance Software | =7.0.8 | |
Cisco Adaptive Security Appliance Software | =7.1.1 | |
Cisco Adaptive Security Appliance Software | =7.1.2 | |
Cisco Adaptive Security Appliance Software | =7.2\(3\) | |
Cisco Adaptive Security Appliance Software | =7.2\(4\) | |
Cisco Adaptive Security Appliance Software | =7.2\(5\) | |
Cisco Adaptive Security Appliance Software | =8.0\(2\) | |
Cisco Adaptive Security Appliance Software | =8.0\(3\) | |
Cisco Adaptive Security Appliance Software | =8.0\(4\) | |
Cisco Adaptive Security Appliance Software | =8.0\(5\) | |
Cisco Adaptive Security Appliance Software | =8.1\(1\) | |
Cisco Adaptive Security Appliance Software | =8.1\(2\) | |
Cisco Adaptive Security Appliance Software | =8.2 | |
Cisco Adaptive Security Appliance Software | =8.2\(1\) | |
Cisco Adaptive Security Appliance Software | =8.2\(2\) | |
Cisco Adaptive Security Appliance Software | =8.3 | |
Cisco Adaptive Security Appliance Software | =7.0 | |
Cisco Adaptive Security Appliance Software | =7.0\(4\) | |
Cisco Adaptive Security Appliance Software | =7.0\(5\) | |
Cisco Adaptive Security Appliance Software | =7.0\(5.2\) | |
Cisco Adaptive Security Appliance Software | =7.0\(6.7\) | |
Cisco Adaptive Security Appliance Software | =7.0.1.4 | |
Cisco Adaptive Security Appliance Software | =7.0.4.3 | |
Cisco Adaptive Security Appliance Software | =7.1\(2\) | |
Cisco Adaptive Security Appliance Software | =7.1\(2.5\) | |
Cisco Adaptive Security Appliance Software | =7.1\(2.27\) | |
Cisco Adaptive Security Appliance Software | =7.1\(2.48\) | |
Cisco Adaptive Security Appliance Software | =7.1\(2.49\) | |
Cisco Adaptive Security Appliance Software | =7.1\(5\) | |
Cisco Adaptive Security Appliance Software | =7.2\(1\) | |
Cisco Adaptive Security Appliance Software | =7.2\(1.22\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.5\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.7\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.8\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.10\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.14\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.15\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.16\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.17\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.19\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.48\) | |
Cisco Adaptive Security Appliance Software | =8.0 | |
Cisco ASA 5500 CSC-SSM | ||
Cisco ASA 5505 | ||
Cisco ASA 5510 firmware | ||
Cisco ASA 5520 firmware | ||
Cisco ASA 5540 | ||
Cisco ASA 5550 firmware | ||
Cisco ASA 5580 | ||
Cisco PIX | ||
Cisco PIX Firewall | ||
Cisco PIX 506E | ||
Cisco PIX | ||
Cisco PIX Firewall | ||
Cisco PIX | ||
Cisco PIX | ||
Cisco PIX Firewall |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2010-2817 is classified as critical due to the potential impact on the security of affected Cisco devices.
To fix CVE-2010-2817, upgrade the Cisco Adaptive Security Appliance software to a version that is not vulnerable, specifically one higher than the affected versions listed in the advisory.
CVE-2010-2817 affects Cisco Adaptive Security Appliances (ASA) 5500 series and Cisco PIX security appliances running specific vulnerable software versions.
The affected software versions for CVE-2010-2817 include Cisco ASA 7.0 before 7.0(8.11), 7.1 and 7.2 before 7.2(5), and various others leading up to version 8.3.
There is evidence to suggest that CVE-2010-2817 is being actively exploited, making immediate remediation critical.