CVE-2013-3463: Medium severity Cisco Adaptive Security Appliance Software vulnerability
The protocol-inspection feature on Cisco Adaptive Security Appliances (ASA) devices does not properly implement the idle timeout, which allows remote attackers to cause a denial of service (connection-table exhaustion) via crafted requests that use an inspected protocol, aka Bug ID CSCuh13899.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3463?
CVE-2013-3463 is rated as a high severity vulnerability due to its potential for denial of service attacks.
How do I fix CVE-2013-3463?
To mitigate CVE-2013-3463, upgrade to the latest version of Cisco Adaptive Security Appliance Software that addresses this vulnerability.
What devices are affected by CVE-2013-3463?
CVE-2013-3463 affects Cisco Adaptive Security Appliances that utilize the protocol-inspection feature.
What type of attack does CVE-2013-3463 enable?
CVE-2013-3463 allows remote attackers to conduct a denial of service attack resulting in connection-table exhaustion.
Is there a workaround for CVE-2013-3463?
While there is no formal workaround for CVE-2013-3463, administrators should monitor traffic and apply recommended security best practices.