First published: Sat Oct 22 2011(Updated: )
The platform-sw component on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 before 8.2(5.3), 8.3 before 8.3(2.20), and 8.4 before 8.4(2.1) does not properly handle non-ASCII characters in an interface description, which allows local users to cause a denial of service (reload without configuration) via a crafted description, aka Bug ID CSCtq50523.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | =7.0 | |
Cisco Adaptive Security Appliance Software | =7.0\(0\) | |
Cisco Adaptive Security Appliance Software | =7.0\(1\) | |
Cisco Adaptive Security Appliance Software | =7.0\(2\) | |
Cisco Adaptive Security Appliance Software | =7.0\(4\) | |
Cisco Adaptive Security Appliance Software | =7.0\(5\) | |
Cisco Adaptive Security Appliance Software | =7.0\(5.2\) | |
Cisco Adaptive Security Appliance Software | =7.0\(6\) | |
Cisco Adaptive Security Appliance Software | =7.0\(6.7\) | |
Cisco Adaptive Security Appliance Software | =7.0\(7\) | |
Cisco Adaptive Security Appliance Software | =7.0\(8\) | |
Cisco Adaptive Security Appliance Software | =7.0.1 | |
Cisco Adaptive Security Appliance Software | =7.0.1.4 | |
Cisco Adaptive Security Appliance Software | =7.0.2 | |
Cisco Adaptive Security Appliance Software | =7.0.4 | |
Cisco Adaptive Security Appliance Software | =7.0.4.3 | |
Cisco Adaptive Security Appliance Software | =7.0.5 | |
Cisco Adaptive Security Appliance Software | =7.0.6 | |
Cisco Adaptive Security Appliance Software | =7.0.7 | |
Cisco Adaptive Security Appliance Software | =7.0.8 | |
Cisco Adaptive Security Appliance Software | =7.0.8-interim | |
Cisco Adaptive Security Appliance Software | =7.1 | |
Cisco Adaptive Security Appliance Software | =7.2 | |
Cisco Adaptive Security Appliance Software | =7.2\(1\) | |
Cisco Adaptive Security Appliance Software | =7.2\(1.22\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.5\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.7\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.8\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.10\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.14\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.15\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.16\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.17\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.18\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.19\) | |
Cisco Adaptive Security Appliance Software | =7.2\(2.48\) | |
Cisco Adaptive Security Appliance Software | =7.2\(3\) | |
Cisco Adaptive Security Appliance Software | =7.2\(4\) | |
Cisco Adaptive Security Appliance Software | =7.2\(5\) | |
Cisco Adaptive Security Appliance Software | =7.2.1 | |
Cisco Adaptive Security Appliance Software | =7.2.2 | |
Cisco Adaptive Security Appliance Software | =7.2.3 | |
Cisco Adaptive Security Appliance Software | =7.2.4 | |
Cisco Adaptive Security Appliance Software | =7.2.5 | |
Cisco Adaptive Security Appliance Software | =8.0 | |
Cisco Adaptive Security Appliance Software | =8.0\(2\) | |
Cisco Adaptive Security Appliance Software | =8.0\(3\) | |
Cisco Adaptive Security Appliance Software | =8.0\(4\) | |
Cisco Adaptive Security Appliance Software | =8.0\(5\) | |
Cisco Adaptive Security Appliance Software | =8.0.2 | |
Cisco Adaptive Security Appliance Software | =8.0.3 | |
Cisco Adaptive Security Appliance Software | =8.0.4 | |
Cisco Adaptive Security Appliance Software | =8.0.5 | |
Cisco Adaptive Security Appliance Software | =8.1 | |
Cisco Adaptive Security Appliance Software | =8.2\(1\) | |
Cisco Adaptive Security Appliance Software | =8.2\(2\) | |
Cisco Adaptive Security Appliance Software | =8.2\(3\) | |
Cisco Adaptive Security Appliance Software | =8.2\(3.9\) | |
Cisco Adaptive Security Appliance Software | =8.2\(4\) | |
Cisco Adaptive Security Appliance Software | =8.2\(4.1\) | |
Cisco Adaptive Security Appliance Software | =8.2\(4.4\) | |
Cisco Adaptive Security Appliance Software | =8.2\(5\) | |
Cisco Adaptive Security Appliance Software | =8.2.1 | |
Cisco Adaptive Security Appliance Software | =8.2.2 | |
Cisco Adaptive Security Appliance Software | =8.2.2-interim | |
Cisco Adaptive Security Appliance Software | =8.3\(1\) | |
Cisco Adaptive Security Appliance Software | =8.3\(2\) | |
Cisco Adaptive Security Appliance Software | =8.4\(1\) | |
Cisco Adaptive Security Appliance Software | =8.4\(1.11\) | |
Cisco Adaptive Security Appliance Software | =8.4\(2\) | |
Cisco Adaptive Security Appliance Software | =8.5 | |
Cisco Adaptive Security Appliance Software | =8.5\(1\) | |
Cisco Adaptive Security Appliance 5500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2060 is classified as a medium severity vulnerability.
To fix CVE-2011-2060, upgrade the software on Cisco Adaptive Security Appliances to 8.2(5.3) or later, 8.3(2.20) or later, or 8.4(2.1) or later.
The vulnerability affects Cisco Adaptive Security Appliances (ASA) 5500 series devices running specified versions below the necessary updates.
CVE-2011-2060 allows local users to create a denial of service by manipulating non-ASCII characters in an interface description.
CVE-2011-2060 affects Cisco Adaptive Security Appliance software versions prior to 8.2(5.3), 8.3(2.20), and 8.4(2.1).