CVE-2013-5542: High severity cisco adaptive security appliance vulnerability
Cisco Adaptive Security Appliance (ASA) Software 8.4 before 8.4(7.2), 8.7 before 8.7(1.8), 9.0 before 9.0(3.6), and 9.1 before 9.1(2.8) allows remote attackers to cause a denial of service (firewall-session disruption or device reload) via crafted ICMP packets, aka Bug ID CSCui77398.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5542?
CVE-2013-5542 is rated as a high-severity vulnerability that allows remote attackers to disrupt firewall sessions or reload the device.
How do I fix CVE-2013-5542?
To mitigate CVE-2013-5542, update your Cisco Adaptive Security Appliance Software to a version that is 8.4(7.2), 8.7(1.8), 9.0(3.6), or 9.1(2.8) or later.
What types of attacks does CVE-2013-5542 allow?
CVE-2013-5542 allows remote attackers to execute denial of service attacks through crafted ICMP packets.
Which versions of Cisco Adaptive Security Appliance Software are affected by CVE-2013-5542?
CVE-2013-5542 affects Cisco Adaptive Security Appliance Software versions 8.4 before 8.4(7.2), 8.7 before 8.7(1.8), 9.0 before 9.0(3.6), and 9.1 before 9.1(2.8).
Is there a workaround for CVE-2013-5542?
A recommended workaround for CVE-2013-5542 is to configure the ASA to block ICMP traffic if it's unnecessary for your environment.