First published: Thu Jul 18 2013(Updated: )
The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before 7.1(6)E4, and IPS 4300 sensors before 7.1(5)E4 allows remote attackers to cause a denial of service (MainApp process hang) via malformed IPv4 packets, aka Bug ID CSCtx18596.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco ASA 5500-X series IPS SSP Software | =7.1 | |
Cisco Intrusion Prevention System | <=7.1 | |
Cisco ASA 5585-X | ||
Cisco Intrusion Detection System (IDS) | ||
Cisco IPS Sensor Software | ||
Cisco IPS Sensor Software | ||
Cisco IPS Sensor Software | ||
Cisco IPS Sensor Software | ||
Cisco IPS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-1243 is rated as a medium severity vulnerability due to its potential for causing denial of service.
To mitigate CVE-2013-1243, upgrade the affected Cisco Intrusion Prevention System software to the latest version that addresses this vulnerability.
CVE-2013-1243 affects Cisco ASA 5500-X, IPS 4500, and IPS 4300 series hardware and software modules prior to specified versions.
CVE-2013-1243 allows remote attackers to cause a denial of service by sending malformed IPv4 packets.
Monitor Cisco ASA 5500-X series, IPS 4300/4500 sensors, and other Cisco IPS products for CVE-2013-1243 vulnerabilities.