First published: Thu Apr 11 2013(Updated: )
Cisco Adaptive Security Appliances (ASA) devices with software 9.0 before 9.0(1.2) allow remote attackers to cause a denial of service (device reload) via a crafted field in a DNS message, aka Bug ID CSCuc80080.
Credit: ykramarz@cisco.com ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Adaptive Security Appliance Software | =9.0 | |
Cisco Adaptive Security Appliance Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1152 has a high severity rating due to its potential to cause a denial of service by remotely reloading affected Cisco ASA devices.
To fix CVE-2013-1152, upgrade affected Cisco ASA devices to the software version 9.0(1.2) or later.
CVE-2013-1152 affects Cisco ASA devices running software version 9.0 and earlier.
Yes, CVE-2013-1152 can be exploited remotely through crafted DNS messages sent to the affected ASA devices.
CVE-2013-1152 is associated with a denial of service attack that can lead to device reloading.